KuppingerCole Analysts AG Names Group-IB a Product Leader for MXDR

Group-IB, a global threat hunting and intelligence company headquartered in Singapore, was included in KuppingerCole Analysts AG’s 2020 report ‘Leadership Compass for Network Detection and Response’ for its Managed Extended Detection and Response (MXDR), a solution combining proactive protection against sophisticated threats and proactive global threat hunting. KuppingerCole Analysts AG, a Europe-based independent analyst organization, identified Group-IB as a «product leader» and «innovation leader» for MXDR’ security, wide NDR functionality, and unique integration capabilities. KuppingerCole analysts particularly noted MXDR’s capability for industrial applications and the company’s innovativeness — a key capability in all IT market segments.

Group-IB MXDR, trusted by banks, financial organizations, and industrial enterprises in dozens of countries in Western Europe, Africa and South-Eastern Asia, embodies adversary-centric approach and ensures protection against the most complex targeted attacks and advanced persistent threats (APTs), effective automated response and mitigation in a single platform. This adversary-centric approach is implemented through MXDR enrichment with information from Group-IB’s attribution-based Threat Intelligence system that holds the most up-to-date data on indicators of compromise, attackers and their TTPs, securing precise attribution of cyberattacks to a specific threat actor.

Group-IB MXDR includes five major modules — MXDR Sensor, MXDR Polygon, MXDR Decryptor, MXDR Huntpoint, MXDR Huntbox — that ensure correlation of internal and external telemetry data for effective threat hunting and analysis that can detect sophisticated attacks at the preparation stage.

Group-IB is a provider of high-quality threat intel, which is also used by their products as well as shared with Cyber Threat Alliance, global CERTs, Europol, Interpol, etc.,’ KuppingerCole Analysts AG said in its report. ‘Group-IB’s MXDR is one of the most feature-rich NDR solutions in the market. It exceeds expectations for NDR functionality … Organizations that need a full range of NDR capabilities, especially for industrial applications, should consider Group-IB MXDR.

In its report, KuppingerCole Analysts AG, in particular, highlighted Group-IB MXDR’ ability to detect lateral movement and communications with attackers’ CnC servers thanks to anomaly detection algorithms (such as domain generation algorithms analysis) and gave credits to MXDR analyzing malware leveraging unsupervised machine learning models.

Group-IB is honored to have its MXDR listed in KuppingerCole Analysts AG ‘Leadership Compass for Network Detection and Response’. Masterminding its MXDR, Group-IB sought to create a single solution for the protection of both corporate and industrial networks that would combine threat hunting with automated incident management and response. As a result, one of a kind solution emerged that is capable of distinguishing relevant attacks and attackers’ infrastructures at a preparation stage and whose constant enrichment with threat intelligence data ensures precise correlation and attribution of threats.

Dmitry Volkov
Dmitry Volkov

Group-IB CTO and Head of Threat Hunting Intelligence

About Group-IB

Group-IB, with its headquarters in Singapore, is one of the leading providers of solutions dedicated to detecting and preventing cyberattacks, identifying online fraud, investigating high-tech crimes, and protecting intellectual property. The company’s Threat Intelligence and Research Centers are located in the Middle East (Dubai), the Asia-Pacific (Singapore), and Europe (Amsterdam).

Group-IB’s Unified Risk Platform is an ecosystem of solutions that understands each organization’s threat profile and tailors defenses against them in real-time from a single interface. The Unified Risk Platform provides complete coverage of the cyber response chain. Group-IB’s products and services consolidated in Group-IB’s Unified Risk Platform include Group-IB’s Threat IntelligenceManaged XDRDigital Risk ProtectionFraud ProtectionAttack Surface ManagementBusiness Email ProtectionAudit & ConsultingEducation & TrainingDigital Forensics & Incident ResponseManaged Detection & Response, and Cyber Investigations.

Group-IB’s technological leadership and R&D capabilities are built on the company’s 19 years of hands-on experience in cybercrime investigations worldwide and more than 70,000 hours of cybersecurity incident response accumulated in our leading DFIR Laboratory, High-Tech Crime Investigations Department, and round-the-clock CERT-GIB.

Group-IB is an active partner in global investigations led by international law enforcement organizations such as Europol and INTERPOL. Group-IB is also a member of the Europol European Cybercrime Centre’s (EC3) Advisory Group on Internet Security, which was created to foster closer cooperation between Europol and its leading non-law enforcement partners.

Group-IB’s experience in threat hunting and cyber intelligence has been fused into an ecosystem of highly sophisticated software and hardware solutions designed to monitor, identify, and prevent cyberattacks. Group-IB’s mission is to protect its clients in cyberspace every day by creating and leveraging innovative solutions and services.

Group-IB’s experience in threat hunting and cyber intelligence has been fused into an ecosystem of highly sophisticated software and hardware solutions designed to monitor, identify, and prevent cyberattacks. Group-IB’s mission is to fight high-tech crime while protecting our clients in cyberspace and helping them achieve their goals. To do so, we analyze cyber threats, develop our infrastructure to monitor them, respond to incidents, investigate complex high-tech crimes, and design unique technologies, solutions, and services to counteract adversaries.