SS8’s time machine is designed to automate the hunt for compromises
This column is available in a weekly newsletter called IT Best Practices. Click here to subscribe.
When it comes to enterprise security, it has long been established that prevention, though critical, is not enough. Prevention largely depends on knowing what is bad and priming security devices like firewalls and intrusion prevention systems with the rules necessary to keep bad stuff out. The problem is, something can be bad but nobody knows it yet, so there’s no rule to put in the firewall. An attacker’s damage can be done long before the rule is created.
To read this article in full or to leave a comment, please click here
