Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Threat Intelligence

9/4/2019
05:47 PM
Dark Reading
Dark Reading
Products and Releases
0%
100%

Darktrace Cyber AI Analyst Investigates Threats At Machine Speed

Augments Human Security Teams Reducing Time to Triage by 92%

Cambridge, UK – Wednesday, September 4th, 2019 – Darktrace, the world’s leading cyber AI company, has today announced the launch of the Cyber AI Analyst, a new technology that emulates human thought processes to continuously investigate cyber-threats at machine speed. With the power to transform the security industry, early adopters of this technology reported a 92% reduction in the time required to investigate threats and provide conclusions to executives.

This ground-breaking innovation is the culmination of over three years of research at the Darktrace R&D Center in Cambridge, UK. Using various forms of machine learning, including unsupervised, supervised, and deep learning, the technology learned human intuition and trade craft from more than 100 world-class cyber analysts across thousands of customer deployments.

Typically, a human analyst will spend anywhere between half an hour and half a day investigating a single suspicious security incident. They look for patterns, form hypotheses, reach conclusions about how to mitigate the threat, and share the findings with the rest of the business. Darktrace’s Cyber AI Analyst accelerates this process, continuously conducting investigations behind the scenes and operating at a speed and scale beyond human capabilities.

“Darktrace’s Cyber AI Analyst quickly presents security information in a format that’s both elegant and intuitive,” commented Chris Kissel, Research Director at IDC. “By automatically investigating security events, the AI Analyst helps reduce noise more than any other technology. This is an important development in the security industry. 

“These are exactly the kinds of security insights my team wants to have at their fingertips,” commented Dan McNamara, CTO at Medreview. “Automating as much of incident response as possible is the end-game. The AI Analyst is the obvious next step and a clear evolution of the Darktrace platform.”

By learning from the millions of interactions between Darktrace’s expert analysts and Darktrace’s flagship solution, the Enterprise Immune System, the Cyber AI Analyst combines human expertise with the consistency, speed, and scalability of AI. The ability of AI to investigate every possibility, make connections between seemingly disparate events, and quickly illuminate the full scope of a security incident dramatically reduces ‘time to meaning’ and buys back time for human teams. 

“The burden of investigating threats typically falls on the shoulders of a small number of trained security professionals,” commented Mike Beck, Global Head of Threat Analysis, Darktrace. “With Cyber AI Analyst, security teams can now rely on AI to investigate hundreds of threats at once, allowing human analysts to focus on the most strategic work.”

About Darktrace

 

Darktrace is the world’s leading cyber AI company and the creator of Autonomous Response technology.

Its self-learning AI is modeled on the human immune system and used by over 3,000 organizations to protect against threats to the cloud, email, IoT, networks and industrial systems. This includes insider threat, industrial espionage, IoT compromises, zero-day malware, data loss, supply chain risk and long-term infrastructure vulnerabilities.

The company has over 900 employees, 40 offices and headquarters in San Francisco and Cambridge, UK. Every 3 seconds, Darktrace AI fights back against a cyber-threat, preventing it from causing damage.

 

# # #

 

 

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
US Turning Up the Heat on North Korea's Cyber Threat Operations
Jai Vijayan, Contributing Writer,  9/16/2019
MITRE Releases 2019 List of Top 25 Software Weaknesses
Kelly Sheridan, Staff Editor, Dark Reading,  9/17/2019
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: "He's too shy to invite me out face to face!"
Current Issue
7 Threats & Disruptive Forces Changing the Face of Cybersecurity
This Dark Reading Tech Digest gives an in-depth look at the biggest emerging threats and disruptive forces that are changing the face of cybersecurity today.
Flash Poll
The State of IT Operations and Cybersecurity Operations
The State of IT Operations and Cybersecurity Operations
Your enterprise's cyber risk may depend upon the relationship between the IT team and the security team. Heres some insight on what's working and what isn't in the data center.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-15138
PUBLISHED: 2019-09-20
The html-pdf package 2.2.0 for Node.js has an arbitrary file read vulnerability via an HTML file that uses XMLHttpRequest to access a file:/// URL.
CVE-2019-6145
PUBLISHED: 2019-09-20
Forcepoint VPN Client for Windows versions lower than 6.6.1 have an unquoted search path vulnerability. This enables local privilege escalation to SYSTEM user. By default, only local administrators can write executables to the vulnerable directories. Forcepoint thanks Peleg Hadar of SafeBreach Labs ...
CVE-2019-6649
PUBLISHED: 2019-09-20
F5 BIG-IP 15.0.0, 14.1.0-14.1.0.6, 14.0.0-14.0.0.5, 13.0.0-13.1.1.5, 12.1.0-12.1.4.1, 11.6.0-11.6.4, and 11.5.1-11.5.9 and Enterprise Manager 3.1.1 may expose sensitive information and allow the system configuration to be modified when using non-default ConfigSync settings.
CVE-2019-6650
PUBLISHED: 2019-09-20
F5 BIG-IP ASM 15.0.0, 14.1.0-14.1.0.6, 14.0.0-14.0.0.5, 13.0.0-13.1.1.5, 12.1.0-12.1.4.1, 11.6.0-11.6.4, and 11.5.1-11.5.9 may expose sensitive information and allow the system configuration to be modified when using non-default settings.
CVE-2014-10396
PUBLISHED: 2019-09-20
The epic theme through 2014-09-07 for WordPress allows arbitrary file downloads via the file parameter to includes/download.php.