Does Elastic Defend receive detection updates?

Hello Matthew!

The Elastic Security Labs team regularly updates our behavioral detections, yara rules, machine learning malware models, and other detection content for Elastic Defend (EPP/EDR product). Many of these updates are visible in the open here. We also publish a ton of threat research articles at Elastic Security Labs. Our goal is to ensure our users are well protected from the evolving threat landscape. We participate in independent third party testing so existing or prospective customers can see how we stack up against the competition. In the latest test results from av-comparatives, we were the top ranked vendor for detection efficacy.

Hope this helps!

2 Likes