Using Anti-Evasion Malware Detection Techniques to Block Stealth Attacks: SANS Product Review on Minerva Labs

Using Anti-Evasion Malware Detection Techniques to Block Stealth Attacks: SANS Product Review on Minerva Labs

February 02, 20191 min read

In cybersecurity, the pressure is always on. Securing your network is an ongoing struggle and deploying an array of security tools often results in more alerts than you can handle. When alerts pile up, they create a bigger headache instead of fixing issues and detecting threats as intended.

Anti-evasion technology is helping organizations avoid the overlapping noise of alert upon alert. While traditional defenses scan AntiVirus files to evaluate threats, Minerva Labs uses advanced malware detection techniques to outsmart malware by tricking it into attacking itself.

SANS, a leading cooperative research and education organization for security professionals, tested Minerva’s anti-evasion software to see how it would hold up in crisis.

“Most endpoint security solutions focus on examining file attributes or behavioral patterns of how malware operates,” SANS reported. “Therefore, as the malware becomes more evasive, the effectiveness of the techniques deteriorates rapidly. In contrast, with Minerva’s Anti-Evasion Platform, the more evasive the malware we tested, the more effective the solution was at preventing the threat from affecting the system.”

In their review, SANS ran multiple attack types against Minerva, including malware with the following criteria:

  • Sandbox avoidance

  • Memory injection attacks

  • Use of malicious documents

  • File destruction

Find out more about how the Minerva malware detection platform performed when it went head-to-head with each of these malicious attacks.

Back to Blog

CyVent and the CyVent Logo are trademarks of CyVent. All other product names, logos, and brands are property of their respective owners, and used in this website for identification purposes only.

Please note: This content is made available for informational purposes only and is not meant to provide specific advice toward specific business-related activities. Use of this content doesn’t create a client relationship between you, CyVent, and any authors associated with the CyVent corporate name. This content should not be used as a substitute for security advice given by specialized professionals.

Phone: +1 (305) 299-1188

Email: hello@cyvent.com

- 850 Los Trancos Road

Portola Valley, CA 94028

- 1395 Brickell Avenue, Suite 800

Miami, FL 33129