Virtualization Technology News and Information
SE Labs Test Shows CylancePROTECT Identifies and Blocks Threats Years Before Malware Appears in the Wild

Cylance Inc., the company that revolutionized the antivirus and endpoint protection industry with true AI powered prevention that blocks advanced cyberattacks, including fileless attacks, malware, advanced persistent threats, and zero-day attacks, today announced the results of SE Labs' Predictive Malware Response Test of CylancePROTECT, its prevention-focused AI endpoint security product.

SE Labs determined the efficacy of artificial intelligence by identifying what they call Predictive Advantage (PA), the time difference between the creation of the AI model being tested and the first time a threat is identified. All past and present AI models of CylancePROTECT were tested against nine threats and five variants of each that were found in the wild after May 2015. They were WannaCry, Cerber, Petya, NotPetya, Locky, Bad Rabbit, GhostAdmin, GoldenEye and Reyptson, all dating from February 2016 to November 2017. CylancePROTECT had an average predictive advantage of 25 months, and in some cases, it recognized and protected against threats that would not appear in the wild for another 33 months.

Traditional cybersecurity product tests measure the effectiveness of solutions against known, signature-based malware. However, the detection-based approach to cybersecurity has become ineffective in a rapidly evolving threat landscape. SE Labs' methodology tests the ability of products to protect against unknown threats. For the test, the May 2015 model of CylancePROTECT was used offline or in "self-contained" mode, without the benefit of updates or cloud queries. This allowed SE Labs to isolate and identify the power of older generations of AI against new and upcoming threats. It demonstrated that CylancePROTECT prevented advanced threats without reliance on signature-based learnings, and with no false positives.

"SE Labs asked if a previous version of CylancePROTECT could work in a modern context, against future threats. It's a unique approach that forces you to consider the role AI plays in protecting users," said Chad Skipper, VP Competitive Intelligence & Product Testing at Cylance. "Traditional AV relies on recognizing malware signatures to improve its product, but these results clearly show that a preventative, AI-based approach to security is both necessary and a better approach. SE Labs is highly regarded for their quality of tests, and we look forward to working with them to keep AI and a prevention-based approach front and center."

Test results demonstrate the CylancePROTECT May 2015 model was capable of preventing threats that did not exist at the time the AI model was trained, and provide insight into how far ahead in time it could be effective without new knowledge. In the previous three years, Cylance has developed advanced generations with new insights and learnings. Test results show that CylancePROTECT is able to predict future attacks, giving users an advantage against future adversaries and threats.

"The cybersecurity landscape is crowded, causing confusion in the market and uncertainty from decision-makers as to how to allocate their resources. That is partly why we are developing advanced testing methodologies -- to shine a light on the most effective products on the market," said Simon Edwards, director of UK-based SE Labs. "We as an industry need a better way to test products, and this test is a step in the right direction. CylancePROTECT's performance in this test showcases the power of its AI against some of the most damaging threats we've seen in the past three years."

Published Wednesday, April 11, 2018 1:11 PM by David Marshall
Filed under:
SE Labs Test Shows CylancePROTECT Identifies and Blocks Threats Years Before Malware Appears in the Wild - EMC VMAX - (Author's Link) - April 12, 2018 5:22 AM
To post a comment, you must be a registered user. Registration is free and easy! Sign up now!
<April 2018>