SentinelOne IncSentinelOne's joint research with Tenable highlights its runtime detection capabilities, potentially increasing demand for its security solutions.
งานวิจัยร่วมใหม่จาก SentinelOne และ Tenable พบว่าผู้โจมตีทางไซเบอร์ รวมถึงรัฐชาติและอาชญากร ให้ความสำคัญกับระบบนิเวศของผู้จำหน่ายอุปกรณ์ขอบเครือข่าย (edge-device vendor ecosystems) มากกว่าช่องโหว่รายจุด การศึกษานี้ผสานข้อมูลการเปิดเผยจาก Tenable เข้ากับการตรวจจับแบบเรียลไทม์ของ SentinelOne พบว่าข้อมูลการเปิดเผยและการตรวจจับแบบเรียลไทม์ตรงกันที่พื้นผิวของผู้จำหน่ายเดียวกันถึง 79% ในขณะที่ความทับซ้อนในระดับช่องโหว่รายจุดมีเพียง 21% ช่องโหว่สิบสองรายการในชุดข้อมูลมีการระบุแหล่งที่มาหลายทางที่ได้รับการยืนยัน โดยกลุ่มที่รัฐสนับสนุนและแรนซัมแวร์ใช้ประโยชน์จากช่องโหว่เดียวกันอย่างอิสระในห้าหมวดหมู่การคุกคาม รวมถึงจีน รัสเซีย เกาหลีเหนือ อิหร่าน และอาชญากร องค์กรมากกว่าครึ่งที่ใช้ผลิตภัณฑ์ F5 มีช่องโหว่ที่ถูกเปิดเผยและถูกโจมตีอย่างน้อยหนึ่งรายการ และลูกค้า Citrix ใช้เวลาเฉลี่ย 461 วันในการแก้ไข ซึ่งช้าที่สุดในบรรดาผู้จำหน่ายที่ศึกษา งานวิจัยยังชี้ให้เห็นถึงช่องว่างด้านความซับซ้อนในการแก้ไขที่สำคัญทางสถิติถึง 24 วัน โดยเน้นว่าความเร็วในการแพตช์เพียงอย่างเดียวไม่เพียงพอ หากไม่มีการลดพื้นที่การโจมตีและการป้องกันที่จุดสิ้นสุด
SentinelOne IncSentinelOne's joint research with Tenable highlights its runtime detection capabilities, potentially increasing demand for its security solutions.
Tenable Holdings IncTenable's exposure data is central to the research, showcasing its value in identifying vulnerabilities and potentially boosting demand for its products.
F5 Networks IncMore than half of organizations running F5 products have at least one exposed, actively exploited vulnerability, indicating a security risk that could affect customer trust and demand.
Citrix customers take the slowest remediation time (461 days), indicating a security weakness that could harm customer confidence and demand.