Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Threat Intelligence

9/4/2019
05:47 PM
Dark Reading
Dark Reading
Products and Releases
0%
100%

Darktrace Cyber AI Analyst Investigates Threats At Machine Speed

Augments Human Security Teams Reducing Time to Triage by 92%

Cambridge, UK – Wednesday, September 4th, 2019 – Darktrace, the world’s leading cyber AI company, has today announced the launch of the Cyber AI Analyst, a new technology that emulates human thought processes to continuously investigate cyber-threats at machine speed. With the power to transform the security industry, early adopters of this technology reported a 92% reduction in the time required to investigate threats and provide conclusions to executives.

This ground-breaking innovation is the culmination of over three years of research at the Darktrace R&D Center in Cambridge, UK. Using various forms of machine learning, including unsupervised, supervised, and deep learning, the technology learned human intuition and trade craft from more than 100 world-class cyber analysts across thousands of customer deployments.

Typically, a human analyst will spend anywhere between half an hour and half a day investigating a single suspicious security incident. They look for patterns, form hypotheses, reach conclusions about how to mitigate the threat, and share the findings with the rest of the business. Darktrace’s Cyber AI Analyst accelerates this process, continuously conducting investigations behind the scenes and operating at a speed and scale beyond human capabilities.

“Darktrace’s Cyber AI Analyst quickly presents security information in a format that’s both elegant and intuitive,” commented Chris Kissel, Research Director at IDC. “By automatically investigating security events, the AI Analyst helps reduce noise more than any other technology. This is an important development in the security industry. 

“These are exactly the kinds of security insights my team wants to have at their fingertips,” commented Dan McNamara, CTO at Medreview. “Automating as much of incident response as possible is the end-game. The AI Analyst is the obvious next step and a clear evolution of the Darktrace platform.”

By learning from the millions of interactions between Darktrace’s expert analysts and Darktrace’s flagship solution, the Enterprise Immune System, the Cyber AI Analyst combines human expertise with the consistency, speed, and scalability of AI. The ability of AI to investigate every possibility, make connections between seemingly disparate events, and quickly illuminate the full scope of a security incident dramatically reduces ‘time to meaning’ and buys back time for human teams. 

“The burden of investigating threats typically falls on the shoulders of a small number of trained security professionals,” commented Mike Beck, Global Head of Threat Analysis, Darktrace. “With Cyber AI Analyst, security teams can now rely on AI to investigate hundreds of threats at once, allowing human analysts to focus on the most strategic work.”

About Darktrace

 

Darktrace is the world’s leading cyber AI company and the creator of Autonomous Response technology.

Its self-learning AI is modeled on the human immune system and used by over 3,000 organizations to protect against threats to the cloud, email, IoT, networks and industrial systems. This includes insider threat, industrial espionage, IoT compromises, zero-day malware, data loss, supply chain risk and long-term infrastructure vulnerabilities.

The company has over 900 employees, 40 offices and headquarters in San Francisco and Cambridge, UK. Every 3 seconds, Darktrace AI fights back against a cyber-threat, preventing it from causing damage.

 

# # #

 

 

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Zero-Factor Authentication: Owning Our Data
Nick Selby, Chief Security Officer at Paxos Trust Company,  2/19/2020
44% of Security Threats Start in the Cloud
Kelly Sheridan, Staff Editor, Dark Reading,  2/19/2020
Firms Improve Threat Detection but Face Increasingly Disruptive Attacks
Robert Lemos, Contributing Writer,  2/20/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
6 Emerging Cyber Threats That Enterprises Face in 2020
This Tech Digest gives an in-depth look at six emerging cyber threats that enterprises could face in 2020. Download your copy today!
Flash Poll
How Enterprises Are Developing and Maintaining Secure Applications
How Enterprises Are Developing and Maintaining Secure Applications
The concept of application security is well known, but application security testing and remediation processes remain unbalanced. Most organizations are confident in their approach to AppSec, although others seem to have no approach at all. Read this report to find out more.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-8813
PUBLISHED: 2020-02-22
graph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a cookie, if a guest user has the graph real-time privilege.
CVE-2020-9039
PUBLISHED: 2020-02-22
Couchbase Server 4.x and 5.x before 6.0.0 has Insecure Permissions for the projector and indexer REST endpoints (they allow unauthenticated access).
CVE-2020-8860
PUBLISHED: 2020-02-22
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Samsung Galaxy S10 Firmware G973FXXS3ASJA, O(8.x), P(9.0), Q(10.0) devices with Exynos chipsets. User interaction is required to exploit this vulnerability in that the target must answer a phone call. T...
CVE-2020-8861
PUBLISHED: 2020-02-22
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DAP-1330 1.10B01 BETA Wi-Fi range extenders. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of HNAP login requests. The issue ...
CVE-2020-8862
PUBLISHED: 2020-02-22
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DAP-2610 Firmware v2.01RC067 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of passwords. The issue results from the ...