{"id":106782,"date":"2020-02-25T09:15:41","date_gmt":"2020-02-25T17:15:41","guid":{"rendered":"https:\/\/www.paloaltonetworks.com\/blog\/?p=106782"},"modified":"2020-03-05T08:27:10","modified_gmt":"2020-03-05T16:27:10","slug":"cortex-nss-labs-aep-test","status":"publish","type":"post","link":"https:\/\/www2.paloaltonetworks.com\/blog\/2020\/02\/cortex-nss-labs-aep-test\/","title":{"rendered":"Cortex XDR Earns \"AA\" Rating on NSS Labs 2020 AEP Test"},"content":{"rendered":"<p><span style=\"font-weight: 400;\"><img loading=\"lazy\" decoding=\"async\"  class=\" wp-image-106783 alignright lozad\"  data-src=\"https:\/\/www.paloaltonetworks.com\/blog\/wp-content\/uploads\/2020\/02\/CORTEX-XPR-WEBOPT.jpg\" alt=\"Cortex XDR, by Palo Alto Networks, received an &quot;AA&quot; rating on NSS Labs' 2020 Advanced Endpoint Protection Test\" width=\"360\" height=\"287\" \/>We are excited to announce that NSS Labs, a globally recognized and trusted source for independent cybersecurity guidance, <a href=\"https:\/\/start.paloaltonetworks.com\/nss-labs-cortex-report.html\">have awarded Cortex XDR<\/a><\/span><span style=\"font-weight: 400;\">\u00a0a very strong overall \u201cAA\u201d rating in their recent <\/span><a href=\"https:\/\/www.nsslabs.com\/tested-technologies\/advanced-endpoint-protection\/\" rel=\"nofollow,noopener\" ><span style=\"font-weight: 400;\">Advanced Endpoint Protection (AEP) test<\/span><\/a><span style=\"font-weight: 400;\">. No vendor in the test received higher than an AA rating.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Prevention of attacks is the ultimate security outcome. While sophisticated adversaries work to find ways around and through defenses, excellent protection is the baseline of an effective security program. We believe that NSS Labs' recent results validate that <a href=\"https:\/\/www.paloaltonetworks.com\/blog\/2019\/12\/cortex-what-is-xdr\/\">Cortex XDR<\/a> delivers best-in-class protection that serves as a foundation for our unique extended detection and response capabilities.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">NSS Labs\u2019 Advanced Endpoint Protection Test put leading endpoint security products through 45,000 attack test cases across all tested products including malware, exploits, blended threats, unknown threats, evasions, handcrafted attacks and resistance to tampering.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The test relied upon tools and methods that are currently being used by cybercriminals. NSS increased the level of difficulty throughout the test, beginning with common attacks, escalating to targeted attacks, and then applying obfuscation techniques to see if they could evade defenses.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Cortex XDR earned an overall \u201cAA\u201d grade, which included high marks in the following categories:\u00a0<\/span><\/p>\n<ul>\n<li><b>Manageability.<span style=\"font-weight: 400;\"> Cortex XDR was praised for its extensive and flexible management console, which is lightweight and easy to deploy while maintaining ongoing operations. NSS Labs also lauded Cortex XDR\u2019s logging, alert handling, and reporting functions -- cornerstones of the incident management capabilities that Cortex XDR is known for.<\/span><\/b><\/li>\n<li><b>False-positives. <span style=\"font-weight: 400;\">When security tools block access to legitimate software and websites, it can be extremely disruptive to business users and processes. NSS Labs mixed legitimate application traffic in with their attack techniques throughout the test. Cortex XDR was able to distinguish between malicious and benign processes with ease, correctly identifying 99.5% of false positives.<\/span><\/b><\/li>\n<li><b>Resistance to evasion. <span style=\"font-weight: 400;\">Just as a real world threat actor would, NSS Labs attempted to disguise their attacks at the point of delivery in order to avoid detection, using techniques such as process injection (where malicious code is injected into a trusted process). Cortex XDR blocked <\/span>100%<span style=\"font-weight: 400;\"> of evasion attempts.<\/span><\/b><img loading=\"lazy\" decoding=\"async\"  class=\" wp-image-106816 alignright lozad\"  data-src=\"https:\/\/www.paloaltonetworks.com\/blog\/wp-content\/uploads\/2020\/02\/CortexXDR.png\" alt=\"This logo shows the capabilities of Cortex XDR, as tested by NSS Labs\" width=\"442\" height=\"274\" \/><\/li>\n<li><b>Drive-by exploits.\u00a0 <span style=\"font-weight: 400;\">Cortex XDR blocked 98.4% of drive-by exploits -- attacks that target user endpoints, causing the user to download malware without intending to. Drive-by exploits use techniques like deceptive pop-up ads and website redirects that trigger the automatic download and execution of malicious code.<\/span><\/b><\/li>\n<li><b>Malware. <span style=\"font-weight: 400;\">Malware is still the most widespread cybersecurity threat to enterprises, with millions of new samples generated every year. Cortex XDR showcased exceptional protection against malware, both delivered via email (blocking\/detecting 99.2% of samples) as well as via HTTP (99.3%).<\/span><\/b><\/li>\n<\/ul>\n<p><span style=\"font-weight: 400;\">We are proud to share these results, which we believe reinforce our commitment to creating the best security outcomes possible for our customers. The Cortex XDR endpoint agent is just one of the powerful components of Cortex XDR, which stitches together endpoint, network, cloud and third-party security data with machine learning and behavioral analytics to deliver visibility and control.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Download the <\/span><span style=\"font-weight: 400;\">full <a href=\"https:\/\/start.paloaltonetworks.com\/nss-labs-cortex-report.html\">Cortex XDR test results<\/a><\/span><span style=\"font-weight: 400;\"> from the NSS Labs Advanced Endpoint Protection Test. <\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>NSS Labs\u2019 Advanced Endpoint Protection Test put leading endpoint security products through 45,000 attack test cases across all tested products.<\/p>\n","protected":false},"author":370,"featured_media":106783,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[6770],"tags":[6737,5810,1148],"coauthors":[3907],"class_list":["post-106782","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-secure-the-future","tag-cortex-xdr","tag-endpoint-detection-and-response","tag-nss-labs"],"jetpack_featured_media_url":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-content\/uploads\/2020\/02\/CORTEX-XPR-WEBOPT.jpg","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/posts\/106782","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/users\/370"}],"replies":[{"embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/comments?post=106782"}],"version-history":[{"count":8,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/posts\/106782\/revisions"}],"predecessor-version":[{"id":107320,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/posts\/106782\/revisions\/107320"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/media\/106783"}],"wp:attachment":[{"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/media?parent=106782"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/categories?post=106782"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/tags?post=106782"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/www2.paloaltonetworks.com\/blog\/wp-json\/wp\/v2\/coauthors?post=106782"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}