AV-Comparatives: Announcing the New EDR-Detection-Validation Test
#1
Bug 
Quote:In today’s cybersecurity landscape, endpoint detection and response (EDR) solutions are essential. While traditional security measures focus on prevention, modern threats demand strong detection capabilities. To address this, AV-Comparatives introduces the EDR Detection Validation Test, evaluating the detection effectiveness of enterprise security solutions (EPP, EDR, XDR).
 
Test Methodology

This test assesses real-world detection performance under APT (Advanced Persistent Threat) scenarios, with all products configured in monitoring mode only (prevention features disabled). Key aspects include:
  • Simulating APT attacks using various Tactics, Techniques, and Procedures (TTPs).
  • Checking for detections via active alerts in the management console or locally.
  • If no immediate alerts appear, applying threat hunting techniques to analyze telemetry data.
  • Using the Empire framework in the initial 2025 phase for execution and evaluation.
  • Providing a detailed report including detection screenshots, whether via alerts or telemetry analysis.
Certification and Reporting

The test follows a certification model:
  • Only products meeting detection criteria will be certified.
  • Certified products will have their reports published to validate their effectiveness.
  • Reports for non-certified products will remain strictly internal.
First Certified Product and Pilot Test

A pilot test conducted in January 2025 successfully certified the first product under this methodology, setting an example for interested vendors.

Why Participate?

By joining this test, vendors can validate their real-world detection capabilities, gain industry recognition, and receive valuable insights. Interested vendors should contact us.

Continue Reading...
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Notepad++ v8.7.8 (2025-03-08)
Notepad++ v8.7.8 r...harlan4096 — 16:23
uBOLite_2025.3.8.1350
uBOLite_2025.3.8.1...harlan4096 — 16:22
Privazer 4.0.102
PrivaZer version 4...harlan4096 — 16:20
Microsoft Edge 134.0.3124.51
Version 134.0.3124...harlan4096 — 16:19
AVLab.pl - AVLab joins Microsoft Virus I...
Now, to meet Micro...harlan4096 — 16:17

[-]
Birthdays
Today's Birthdays
avatar (44)walllMIZ
avatar (40)oconyho
Upcoming Birthdays
avatar (43)gapedDow
avatar (37)snorydar
avatar (42)Hectorvot
avatar (50)knowhanPluts
avatar (38)Williamengiz
avatar (45)qaqapeti
avatar (43)battsourIonix
avatar (42)CedricSek
avatar (38)chasRex
avatar (50)tersfargum
avatar (49)alfreExept
avatar (32)uteluxix
avatar (46)piafcflene
avatar (38)Matthewkah
avatar (37)Charlesfibre
avatar (41)napasvem
avatar (43)diploJeoca
avatar (37)francisnj3
avatar (42)artmaGoork
avatar (40)RichardCisee
avatar (37)ykazawu

[-]
Online Staff
zevish's profile zevish

>