SentinelOne IncSentinelOne's joint research with Tenable highlights its runtime detection capabilities, potentially increasing demand for its security solutions.
SentinelOneとTenableによる新しい共同調査で、国家支援型および犯罪組織を含むサイバー攻撃者が、個々の脆弱性ではなく、エッジデバイスのベンダーエコシステムに焦点を当てていることが明らかになった。この調査は、Tenableの露出データとSentinelOneのランタイム検出を組み合わせたもので、露出データとランタイム検出が同じベンダーサーフェスに79%の確率で収束する一方、個々の脆弱性レベルではわずか21%の重複しかないことを示している。データセット内の12の脆弱性は、複数の関連性が確認されており、国家支援型およびランサムウェアの攻撃者が、中国、ロシア、北朝鮮、イラン関連、および犯罪組織を含む5つの脅威カテゴリにわたって、同じ欠陥を独立して悪用している。F5製品を運用している組織の半数以上が、少なくとも1つの露出した、積極的に悪用されている脆弱性を抱えており、Citrixの顧客は、修復に中央値で461日かかっており、調査対象のベンダーの中で最も遅い。この調査はまた、統計的に有意な24日の修復複雑性のギャップを強調しており、攻撃面の最小化とエンドポイント保護なしでは、パッチ適用の速度だけでは不十分であることを示している。
SentinelOne IncSentinelOne's joint research with Tenable highlights its runtime detection capabilities, potentially increasing demand for its security solutions.
Tenable Holdings IncTenable's exposure data is central to the research, showcasing its value in identifying vulnerabilities and potentially boosting demand for its products.
F5 Networks IncMore than half of organizations running F5 products have at least one exposed, actively exploited vulnerability, indicating a security risk that could affect customer trust and demand.
Citrix customers take the slowest remediation time (461 days), indicating a security weakness that could harm customer confidence and demand.