Bitdefender unveils the next generation of endpoint detection and response solutions—eXtended EDR with the addition of analytics and cross-endpoint security event correlation to Bitdefender Endpoint Detection and Response (EDR) and GravityZone Ultra, a unified endpoint prevention, detection and response and risk analytics platform.
These new capabilities identify and stop the spread of ransomware attacks and advanced persistent threats (APTs) before they impact business operations.
With integrated detection and response across operating systems (Windows, Linux, Mac) and hybrid environments (public and private cloud, on-premises), Bitdefender delivers a real-time view for security operations, and allows organisations of all sizes to detect covert attacks that would go unnoticed by analysis and detection on individual endpoints in isolation.
Sophisticated attacks designed to evade security technology detection often mimic normal processes or execute in multiple stages through multiple vectors including endpoints, networks, supply chains, hosted IT and cloud services.
Bitdefender XEDR thwarts complex attacks by ingesting, examining, and correlating telemetry across endpoints to detect indicators of compromise (IOCs), APT techniques, malware signatures, vulnerabilities, and abnormal behaviors. This advanced monitoring automates early detection of attack scenarios through a single dashboard view where the attack occurred.
The new XEDR capabilities also enhance Bitdefender managed detection and response (MDR) by providing greater visibility and incident context during investigations to accelerate threat validation, response actions, and remediation.
“Organisations of all sizes across all industries are in the crosshairs of APTs and skilled cybercriminal groups. Each application, email, unpatched vulnerability, partner relationship or third-party service represents a potential entry point to a catastrophic security incident,” warns Bitdefender president and general manager of business solutions Steve Kelley. “As adversaries evolve techniques to bypass defenses and move through environments undetected, event correlation beyond the boundaries of a single endpoint is crucial for cyber resilience.
“Bitdefender XEDR provides cross-endpoint correlation to detect and eliminate threats faster at each stage of an attack from early reconnaissance to final payload,” Kelley claims.
Forrester analyst Allie Mellen acknowledged and wrote in a report that, “XDR providers will be limited or enabled by the EDR on which they are based. Choose your XDR based on an EDR with high efficacy detections, strong third-party partnerships or extended native capabilities, and automated response recommendations.”
XEDR builds upon the company’s EDR solutions and threat intelligence powered by the Bitdefender Global Protective Network (GPN), an array of millions of sensors continuously collecting endpoint threat data worldwide.
In independent evaluations, Bitdefender scores highest in detecting APT tactics and techniques. In the most recent Mitre Att&cK test, Bitdefender achieved the highest number of detections of the 29 participating cybersecurity vendors.
XEDR with cross-endpoint event correlation is available now and comes standard with Bitdefender EDR, GravityZone Ultra and MDR services.
Customers who wish to add network-based visibility and detection can join the Early Access Program currently underway.