CBLK Carbon Black

Carbon Black Proposes Updated Cybersecurity Kill Chain Model to Help Defenders Stay Ahead of Modern Attacks

Carbon Black Proposes Updated Cybersecurity Kill Chain Model to Help Defenders Stay Ahead of Modern Attacks

New “Cognitive Attack Loop” helps defenders better understand modern cybercriminal cognitions via an attack cycle comprising three distinct phases

WALTHAM, Mass., July 31, 2019 (GLOBE NEWSWIRE) -- NASDAQ: CBLK), a leader in cloud-native endpoint protection today released a ground-breaking white paper that proposes an updated cybersecurity kill chain model to help defenders stay ahead of evolving cyberattacks.

The paper, delves into the various ways cybercriminals have evolved in recent years and offers specific guidelines for CISOs and security professionals to help manage risk. 

“We believe cybersecurity professionals should be looking at existing kill chain models with a new lens,” said Tom Kellermann, Carbon Black’s Chief Cybersecurity Officer and the paper’s primary author.  “It’s no longer helpful to approach cybersecurity linearly. Cognitions and context are critical and help reveal attackers’ intent. Understanding the root cause of attacks and the way attackers think is paramount to good cybersecurity. With the ‘Cognitive Attack Loop,’ we’re offering defenders an updated model of how attackers think and behave.” 

The paper outlines, in detail, the three phases proposed in the Cognitive Attack Loop - Recon & Infiltrate; Maintain & Manipulate; and Execute & Exfiltrate.

The Cognitive Attack Loop was borne from insight provided by Carbon Black’s cloud-native endpoint protection platform (EPP), which collects terabytes of data per day from around the globe, as well as insights from the Carbon Black Threat Analysis Unit (TAU).

“The more insight defenders have into cybercriminal behavior, the more effective technology can be in recognizing and stopping suspicious activity,” Kellermann said. “The patterns we see in attack data transcend any individual attack and allow us to provide protection against a broad set of threats without relying on specific pre-discovered indicators of compromise (IOCs). With the Cognitive Attack Loop, we’ve taken the various insights from our cloud-native EPP and our threat research efforts to arrive at a modern cycle that helps uncover cybercriminal behavior and gives defenders a true sense of how modern attackers are operating.”

About Carbon Black

Carbon Black (NASDAQ: CBLK) is a leader in cloud endpoint protection dedicated to keeping the world safe from cyberattacks. The CB Predictive Security Cloud® (PSC) consolidates endpoint security and IT operations into an endpoint protection platform (EPP) that prevents advanced threats, provides actionable insight and enables businesses of all sizes to simplify operations. By analyzing billions of security events per day across the globe, Carbon Black has key insights into attackers’ behaviors, enabling customers to detect, respond to and stop emerging attacks.

More than 5,300 global customers, including 35 of the Fortune 100, trust Carbon Black to protect their organizations from cyberattacks. The company’s partner ecosystem features more than 500 MSSPs, VARs, distributors and technology integrations, as well as many of the world’s leading IR firms, who use Carbon Black’s technology in more than 500 breach investigations per year.

Carbon Black and CB Predictive Security Cloud are registered trademarks or trademarks of Carbon Black, Inc. in the United States and/or other jurisdictions.



Contact

Ryan Murphy, Carbon Black

Director of Global Communications

 

917-693-2788

EN
31/07/2019

Underlying

To request access to management, click here to engage with our
partner Phoenix-IR's CorporateAccessNetwork.com

Reports on Carbon Black

 PRESS RELEASE

Carbon Black’s Second Canada Threat Report Reveals Growing Defender ...

Carbon Black’s Second Canada Threat Report Reveals Growing Defender Confidence Despite Sustained Threat Levels 88% of surveyed Canadian businesses report breaches, primarily caused by phishing attacks WALTHAM, Mass., Oct. 01, 2019 (GLOBE NEWSWIRE) -- Carbon Black, (NASDAQ: CBLK), a leader in cloud-native endpoint protection, today released the results of its second , based on a survey of 250 CIOs, CTOs and CISOs across Canada. The results show that the threat environment is sustained and sophisticated with phishing attacks serving as the primary cause of data breaches. Key research fin...

 PRESS RELEASE

Carbon Black Named a Visionary in Gartner Magic Quadrant for Endpoint ...

Carbon Black Named a Visionary in Gartner Magic Quadrant for Endpoint Protection Platforms for Third Consecutive Year As a Visionary in Gartner’s latest Magic Quadrant for Endpoint Protection Platforms, Carbon Black was recognized for its ability to execute and completeness of vision WALTHAM, Mass., Aug. 27, 2019 (GLOBE NEWSWIRE) -- , a leader in cloud-native endpoint protection, today announced it was named a Visionary in the Gartner Magic Quadrant for Endpoint Protection Platforms (EPP) for the third consecutive year. Carbon Black believes placement in the Visionaries quadrant validat...

 PRESS RELEASE

Carbon Black to Keynote Federal Financial Institutions Examination Cou...

Carbon Black to Keynote Federal Financial Institutions Examination Council’s 2019 Information Technology Conference WALTHAM, Mass., Aug. 27, 2019 (GLOBE NEWSWIRE) -- (), a leader in cloud-native endpoint protection, today announced that its Chief Cybersecurity Officer, Tom Kellermann, will keynote the Information Technology Conference, hosted by the Federal Financial Institutions Examination Council (FFIEC) in Arlington, VA. Carbon Black’s keynote presentation is scheduled for Tuesday, August 27, 2019 from 8:45 a.m. to 9:45 a.m. Eastern time. The Information Technology Conference is di...

 PRESS RELEASE

Carbon Black Threat Analysis Unit (TAU) Launches “Binee,” an Open-...

Carbon Black Threat Analysis Unit (TAU) Launches “Binee,” an Open-Source Binary Emulator for Malware Researchers at DEF CON 27 LAS VEGAS, Aug. 10, 2019 (GLOBE NEWSWIRE) -- DEF CON 27 --  (NASDAQ: CBLK), a leader in cloud-native endpoint protection, today announced the launch of “Binee,” an open-source binary emulator that bridges the gap between static and dynamic analysis of real-world malware. Binee empowers researchers to extract run-time data from binaries at a cost, speed and scale previously only possible with static analysis tools, opening up a wealth of run-time malware data for b...

 PRESS RELEASE

Carbon Black Delivers New API Capabilities and Access Control on Its C...

Carbon Black Delivers New API Capabilities and Access Control on Its Cloud-Native Endpoint Protection Platform (EPP) New API Access Control offers critical flexibility in data management, enabling better, more secure integrations CB LiveOps API extends the benefits of real-time endpoint query and remediation across the security stack LAS VEGAS and WALTHAM, Mass., Aug. 08, 2019 (GLOBE NEWSWIRE) -- BLACK HAT USA 2019 — (CBLK), a leader in cloud-native endpoint protection, today announced customizable API Access Control across the company’s cloud-native endpoint protection platform (EPP). ...

ResearchPool Subscriptions

Get the most out of your insights

Get in touch