Why an Ounce of Cybersecurity Prevention is Worth a Pound of Detection
Cybersecurity detection is a criminal investigation. Cybercrime investigators are experts who are in limited supply. Sometimes their hunt begins while an intrusion is in process, but more often than...
View ArticleCyber Cyber, Burning Bright: Can XDR Frame Thy Fearful Asymmetry?
The security industry is engulfed in the most asymmetric cyberwarfare we have ever seen. The outcome of an Attacker’s mission may depend entirely upon a single misplaced charge on a single memory chip...
View ArticleMission Possible: Hunting Down and Stopping Stealthy Attackers with MVISION XDR
Imagine, if you will, a scene straight out of one of your favorite impossible mission movies. The background music is driving a suspenseful beat while the antagonist attempts to steal the latest...
View Article5 Ways MVISION XDR Innovates with MITRE ATT&CK
The MITRE ATT&CK® Framework proves that authority requires constant learning and the actionable information it contains has never held greater currency. Likewise, XDR, the category of extended...
View ArticleAre You Ready for XDR?
What is your organization’s readiness for the emerging eXtended Detection Response (XDR) technology? McAfee just released the first iteration of this technology, MVISION XDR. As XDR capabilities become...
View ArticleXDR – Please Explain?
SIEM, we need to talk! Albert Einstein once said, “We cannot solve our problems with the same thinking we used when we created them”. Security vendors have spent the last two decades providing more...
View ArticleMcAfee MVISION for Endpoint is FedRAMP Moderate As Federal Cloud Usage...
Last month, I discussed the FedRAMP program’s basics and why it’s such a big deal for the federal government. In short, the program protects the data of U.S. citizens in the cloud and promotes the...
View ArticleEnergy Company Fights Back with MVISION EDR as Covid-19 Increases Threat...
Over the past 9 months, the world has grappled with the COVID-19 pandemic. We have all felt vulnerable. With borders closed and curfews and lockdowns instituted, things that we can count on, like...
View ArticleWhat Truebill and Other Financial Apps Have in Common With EDR
Truebill, Chargebee, Fusebill and other financial apps have been inundating my social feeds and until recently I didn’t understand why I would need one of these apps. I’m the type that knows her bank...
View ArticleUnravel the XDR Noise and Recognize a Proactive Approach
Cybersecurity professionals know this drill well all too well. Making sense of lots of information and noise to access what really matters. XDR (Extended Detection & Response) has been a technical...
View ArticleWhat A Threat Analyst Really Thinks of Intelligence
When I was a threat analyst, too long ago for me to actually put in writing, I remember the thrill of discovery at the apex of the boredom of investigation. We all know that meme: And over the years,...
View ArticleWhy Ransomware Targets No Longer Need to Wind Up as Ransomware Victims
It was every administrator’s worst nightmare. A small district hospital in western Colorado lost access to 5 years’ worth of patient records after ransomware attackers exploited holes in an aging...
View ArticleWe’re Named 2020 Gartner Peer Insights Customers’ Choice for Enterprise DLP
The McAfee team is very proud to announce today that, for the second time in a row1, McAfee was named a Gartner Peer Insights Customers’ Choice for Enterprise Data Loss Prevention for its McAfee Data...
View ArticleMcAfee XDR: Taking Threat Detection and Response to a New Level
In the battle to protect digital data, the stakes have never been higher, and the outcome has never been more uncertain. Enterprises face ever-changing threats to their digital assets both inside and...
View ArticleMeaningful Context for Your Endpoint Threat Investigations
Threat intelligence (TI) — the art of distilling down everything that is happening globally in the adversarial threatscape and TI Programs – reducing to what is necessary context for your company and...
View ArticleTime to Move from Reactive to Proactive Endpoint Security
One of the most useful new ideas in software development (especially in DevOps) is the concept of “shift-left.” Its meaning is simple: The earlier you are able to tackle an issue, the less trouble you...
View ArticleWhen Less is More – MVISION EDR Leads Detection Efficiency & Alert Quality
If you are an incident responder, a SOC analyst or a threat hunter, you know how a well-designed EDR solution can augment your visibility, detection, and reaction capabilities. However, in many...
View ArticleWhat the hell does “zero day” even mean anymore?
I seem to have spent a fair amount of my time recently talking to a variety of people about “zero days” and the one thing that has really struck me is that almost everyone has a different view on what...
View ArticleMITRE APT29 Evaluation – Importance of Prevention in Endpoint Security
In our recent Racing with Cozy Bear blog, we covered the concept of Time Based Security and highlighted the value protection brings to the defender. This is not to say that blocking an attack removes...
View ArticleGlobal Managed Detection and Response: Managing EDR Without the Red Bull
Staying on top of threats 24/7, 365 days a year can overwhelm the best SOC analysts. The need for constant vigilance of cyber threats, not to mention security tasks such as new tool installs, running...
View Article