The Attivo Endpoint Detection Net (EDN) solution detects credential and privilege escalation attacks, then sends the alert data to the SentinelOne XDR platform, which automatically quarantines the infected endpoint. Combining the two solutions accelerates incident response and reduces the mean-time-to-respond or remediate. Joint customers can prevent endpoint compromises and disrupt attacker attempts to gather credentials and perform reconnaissance activities needed for lateral movement. The integrated solution creates a rich defence against even the most sophisticated attackers and provides comprehensive coverage across the broadest set of attack techniques, as documented in the MITRE ATT&CK matrix.
"The combination of SentinelOne's Singularity XDR Platform with Attivo's EDN provides a unified solution for detecting, disrupting, and responding to credential and privilege escalation attacks," said SentinelOne senior vice president of corporate and business development Chuck Fontana.
"The Attivo EDN solution is a perfect complement to the SentinelOne Singularity XDR platform. It seamlessly adds visibility to credential-based attacks, denies the adversary access to the data they seek, and derails them with misinformation every step of the way," said Attivo Networks senior vice president of engineering Srikant Vissamsetti.
"Plus, joint customers gain visibility into exposed, orphaned or misused credentials on an endpoint and efficiently remove attack paths that adversaries could leverage."
With its Singularity XDR platform, SentinelOne is a leader in endpoint protection (EPP), endpoint detection and response (EDR), IoT security, and cloud security. The platform delivers NGAV and behavioural AI to stop known and unknown threats, differentiated endpoint protection, endpoint detection and response, IoT security, cloud security, and IT operations capabilities. These capabilities consolidate multiple existing technologies into one comprehensive solution with a single agent. Attivo Customers benefit from SentinelOne AI and behavioral engines to further preventing for lateral propagation activity. SentinelOne provides behavioural post-exploitation engines that capture privilege escalation, injections, credential theft and other techniques.
The Endpoint Detection Net (EDN) Suite has made Attivo Networks a leader in protecting Active Directory and credentials on endpoints, both of which are prime targets for modern cyber-attacks. The EDN solution provides SentinelOne customers with an effective way to detect and prevent attacks against Active Directory, credential theft and privilege escalation while reducing the attack surface by removing exposed credentials.