- Content source
- https://www.youtube.com/watch?v=xg9pQfVjhW4&feature=youtu.be
Crowdstrike Falcon is a next gen AV product that claims to use AI to detect zero-day malware. In this review, we put that claim to the test against 1500 malware samples.
The good thing is that we got the chance to see Crowdstrike under test.I don't think this is the appropriate way to test an enterprise-level next-gen AV.
IMO these next gen AV's should not be run alone, they should be run alongside a traditional AV. A better test would be to test this alongwith Windows Defender. The results will be very much different.
I would assume Cylance with VoodooShield set to AlwaysOn-Aggressive, is going to provide vastly superior protection than most AV suites with no system impact, right?
Realistically, they should be combined as Burrito says and they are valuable for that purpose and catch a lot of things other suites miss.
Cylance, realistically, probably is still good to run for some people, when combined with something else. I would assume Cylance with VoodooShield set to AlwaysOn-Aggressive, is going to provide vastly superior protection than most AV suites with no system impact, right? I haven't tested that but I would like to see 1500 pieces of malware executed with a Cylance+VS combo and VS on Always/Aggressive. I highly doubt anything would execute/evade.
Can we stop saying "next-gen"? That's marketing BS. The main vendors (Eset, Kaspersky, BitDefender, Microsoft) use just as advanced technology if not even more advanced. They all use a combination of signatures, behavior blocker, machine learning, AI and HIPS and none of these things are mutually exclusive like these enterprise "next-gen" AVs want you to believe.
To think that they don't is ridiculous when they have an even bigger budget and hundreds of millions of personal computers to manage and protect around the world. The same rules apply. If you need supplemental security solutions, then don't sell it as being superior to "traditional" AVs which give you the complete package.![]()
Next GenAV are all poops
VoodooShield is a simple anti-executable - it does not stop "non-traditional attacks".
@ForgottenSeer 58943 Stop spreading nonsense.