Uptycs, provider of the first unified CNAPP and XDR platform, announced that the company demonstrated 100% detection of 18 steps and 100% technique level detection of all major test cases across both Windows and Linux by MITRE Engenuity ATT&CK® Evaluations Enterprise, a program of MITRE Engenuity™, MITRE’s tech foundation for public good. Through the lens of the MITRE ATT&CK knowledge base, this round focused on adversary behavior informed by Turla (G0010), a known Russia-based threat group. 

Cyber Technology Insights: Orca Security Offers Top Privacy & Cost Savings with Flexibility

The ATT&CK Evaluations are part of MITRE Engenuity’s suite of programs to help government and industry combat cybersecurity attacks through threat-informed defense practices. Organizations can use the evaluations to determine if a vendor addresses their cybersecurity gaps and fit their particular business needs.

MITRE ATT&CK Evaluations tested 30 enterprise cybersecurity vendors by emulating the tactics, techniques and procedures (TTPs) of Turla. The emulation represents how Turla achieves post-exploitation persistence with a minimal footprint through in-memory or kernel implants, evades detection by defensive tools, and exfiltrates sensitive information from Linux and Windows infrastructure.

“Turla puts a wide variety of Linux distros at risk, having demonstrated exceptional proficiency in targeting Linux infrastructure as far back as 2014,” said Ganesh Pai, co-founder and CEO of Uptycs. “Uptycs’ performance in detection coverage in MITRE Engenuity’s ATT&CK Evaluations: Enterprise is a testament to the power of our EDR and vulnerability management capabilities, which provide comprehensive detection for Linux servers in data centers, on-premises, and cloud environments. Uptycs helps SOC analysts prioritize and respond to Linux security incidents with a powerful combination of capabilities. These include environmental context, pre-configured detection rules mapped to the MITRE ATT&CK matrix, and daily detection and threat intel updates from our in-house research team.”

Uptycs’ unified CNAPP and XDR platform gives enterprises centralized control over their security data so they can instantly access the correlated insights they care about most and take decisive action. Uptycs was able to detect the emulated Turla tactics, techniques, and procedures and move quickly to respond. Speed is a critical factor in minimizing the impact of an attack both for detection and remediation. Uptycs unified CNAPP and XDR mitigates risk at scale, and enables a faster response to potential threats and active attacks like Turla.

Cyber Technology Insights: Orca Security Offers Top Privacy & Cost Savings with Flexibility

To participate in our interviews, please write to our CyberTech Media Room at news@intentamplify.com