Does the term "novel attack" resonate with security teams? or does "unknown attack" resonate better? What would you consider novel/unknown attacks? Does your current threat detection solution detect novel/unknown attacks?

4.2k viewscircle icon1 Upvotecircle icon3 Comments
Sort by:
Director of Information Security in Services (non-Government)a year ago

Novel attack resonates more. These attacks may include multiple stages and exploit vulnerabilities to perform an EDR bypass, C2, or ransomware. 

Lightbulb on1
CISO in Softwarea year ago

I always think of 0-day vulns and associated attacks as novel.

CISO (CISO) in Healthcare and Biotecha year ago

Novel attack certainly resonates more. Unknown attacks are only unknown until forensics figure it out.  A robust incident detection and response system (SIEM, UEBA, XDR) should be able to detect unusual activity and let your SOC investigate. them.

Content you might like

Shutdown25%

Turnaround40%

Outage25%

STO (Shutdown, Turnaround, and Outage)5%

Other (please comment)3%

View Results

Cloud Security33%

Cloud Data Analytics (Streaming, Big Data, AI, Data Lake, Data Warehouse etc.)51%

Cloud Migration / Modernization43%

Cloud Native Development (DevOps, Micro Services, Containers, Kubernetes, etc.)31%

Cloud Data (Databases, Data Management, Governance, etc.)14%

View Results