Discussion about this post

User's avatar
Ayrton Criss-Montenegro's avatar

As someone on the detection and response side of things, the biggest issue right now is the collapse of time to exploitation.

Everyone outside of security is just hearing that models like Mythos can soon exploit any system in the world. The reality is that it doesn’t even have to do that for there be serious consequences.

Automation of parts or entire sections of the kill chain allow threat actors to reduce the window for detection and response allowing them to take action on objectives faster than we can react. Especially for teams overwhelmed by alert fatigue, are understaffed, and/or don’t have the resources available to adapt AI systems into their detection workflows.

Not to mention the entire financial aspect of threat actors automating their own workflows.

No posts

Ready for more?