Skip to content

Attack Chains, Not Just Attack Surfaces: Why Testing Individual Techniques Misses the Point

  • by

​Introduction

Security teams have gotten pretty good at testing against what can hurt them. Can this EDR agent catch this payload? Will my organization fail the phishing simulation? Does this SIEM rule fire on this particular technique? And, in more mature organizations, this testing happens continuously rather than as a one-off exercise.

But no matter how much you validate against these Introduction

Security teams have gotten pretty good at testing against what can hurt them. Can this EDR agent catch this payload? Will my organization fail the phishing simulation? Does this SIEM rule fire on this particular technique? And, in more mature organizations, this testing happens continuously rather than as a one-off exercise.

But no matter how much you validate against these  The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *