Loading...
Please wait, while we are loading the content...
Similar Documents
An Empirical Assessment of Endpoint Detection and Response Systems against Advanced Persistent Threats Attack Vectors
| Content Provider | MDPI |
|---|---|
| Author | Karantzas, George Patsakis, Constantinos |
| Copyright Year | 2021 |
| Description | Advanced persistent threats pose a significant challenge for blue teams as they apply various attacks over prolonged periods, impeding event correlation and their detection. In this work, we leverage various diverse attack scenarios to assess the efficacy of EDRs against detecting and preventing APTs. Our results indicate that there is still a lot of room for improvement as state-of-the-art EDRs fail to prevent and log the bulk of the attacks that are reported in this work. Additionally, we discuss methods to tamper with the telemetry providers of EDRs, allowing an adversary to perform a more stealth attack. |
| Ending Page | 421 |
| Page Count | 35 |
| Starting Page | 387 |
| e-ISSN | 2624800X |
| DOI | 10.3390/jcp1030021 |
| Journal | Journal of Cybersecurity and Privacy |
| Issue Number | 3 |
| Volume Number | 1 |
| Language | English |
| Publisher | MDPI |
| Publisher Date | 2021-07-09 |
| Access Restriction | Open |
| Subject Keyword | Journal of Cybersecurity and Privacy Telecommunications Advanced Persistent Threats Edr Malware Evasion |
| Content Type | Text |
| Resource Type | Article |