Detection and Response Did Its Job. Now Someone Has to Actually Fix It.

A host is isolated. A malicious process is killed. A compromised credential is revoked before an attacker can use it again. Detection and response worked exactly as intended, automatically, correctly, and fast.

What follows is usually less tidy. The attacker may be gone, but the opening they used can still be sitting there waiting for the next attempt. Veracode’s State of Software Security Report gives some sense of the problem’s scale. Critical security debt was up 20% year over year, and high-risk vulnerabilities, those considered both severe and highly exploitable, climbed 36%. Detection has made progress, but finding a problem quickly and implementing fixes are clearly not the same thing.

This article has been indexed from DZone Security Zone

Read the original article: