Close Menu
    What's Hot

    WiiM expands its whole-home ecosystem with a new soundbar

    How to Avoid Traffic at Yosemite National Park’s Entrances

    Iran Attacks Kuwait International Airport, U.S. Strikes Qeshm Island

    Facebook X (Twitter) Instagram
    Trending
    • WiiM expands its whole-home ecosystem with a new soundbar
    • How to Avoid Traffic at Yosemite National Park’s Entrances
    • Iran Attacks Kuwait International Airport, U.S. Strikes Qeshm Island
    • House Votes to End Iran War, in a Bipartisan Rebuke to Trump
    • Does Israel have nukes? ‘Most of the world assesses they do,’ says Rubio | Nuclear Weapons News
    • India’s Cockroach Movement Taps Into Youth Discontent
    • Africans Exploring Africa – The New York Times
    • Google’s new open source Gemma 4 12B analyzes audio, video — and runs entirely locally on a typical 16GB enterprise laptop
    interluknewsinterluknews
    • Home
    • Business
      • Corporate News
      • Industry Insights
      • Startups & Entrepreneurship
      • Technology & Innovation
    • Economy
      • Economic Policy
      • Financial Analysis
      • Inflation & Interest Rates
      • Trade & Markets
    • Global
      • Conflicts & Security
      • Diplomacy
      • Global Trends
      • International Affairs
    • Lifestyle
      • Fashion
      • Food & Dining
      • Personal Development
      • Travel
    • Opinion
      • Columns
      • Editorials
      • Expert Opinions
      • Reader Voices
    • More
      • Politics
        • Elections
        • Government & Policy
        • International Relations
        • Political Analysis
      • Sports
        • Cricket
        • Football / Soccer
        • International Sports
        • Local Sports
      • Technology
        • Artificial Intelligence
        • Cybersecurity
        • Gadgets & Reviews
        • Tech News
      • South Africa News
    Facebook X (Twitter) Instagram
    interluknewsinterluknews
    Cybersecurity

    What 45 Days of Watching Your Own Tools Will Tell You About Your Real Attack Surface

    adminBy adminMay 15, 2026No Comments4 Mins Read
    Share Facebook Twitter Pinterest Copy Link Telegram LinkedIn Tumblr Email
    What 45 Days of Watching Your Own Tools Will Tell You About Your Real Attack Surface
    Share
    Facebook Twitter LinkedIn Pinterest Email

    The Hacker NewsMay 15, 2026Endpoint Security / Threat Detection

    What 45 Days of Watching Your Own Tools Will Tell You About Your Real Attack Surface

    In Your Biggest Security Risk Isn’t Malware — It’s What You Already Trust, we made a simple argument: the most dangerous activity inside most organizations no longer looks like an attack. It looks like administration. PowerShell, WMIC, netsh, Certutil, MSBuild — the same trusted utilities your IT team uses every day are also the preferred toolkit of modern threat actors. Bitdefender’s analysis of 700,000 high-severity incidents found legitimate-tool abuse in 84% of them.

    The reaction we heard most was a fair one: We know. So what do we actually do about it?

    That’s what Bitdefender’s complimentary Internal Attack Surface Assessment is built to answer. It’s a 45-day, low-effort engagement available to organizations with 250 or more employees that turns the abstract problem of “living off the land” into a specific, prioritized list of users, endpoints, and tools you can safely take away from attackers without breaking the business.

    Why This, Why Now

    A clean Windows 11 install ships with 133 unique living-off-the-land binaries spread across 987 instances. Bitdefender Labs telemetry found PowerShell active on 73% of endpoints, much of it invoked silently by third-party applications. This isn’t a malware problem — it’s an over-entitlement problem, and you can’t patch your way out of it.

    Gartner now projects that preemptive cybersecurity will account for 50% of IT security spending by 2030, up from less than 5% in 2024, and that 60% of large enterprises will adopt dynamic attack surface reduction (DASR) technologies by 2030, up from less than 10% in 2025. The reason is mechanical: when most intrusions involve no malware and adversaries move in minutes, “detect and respond” is too slow a loop. You have to remove the moves attackers can make in the first place.

    How the Assessment Works

    The engagement runs in four steps over roughly 45 days, powered by GravityZone PHASR — Bitdefender’s Proactive Hardening and Attack Surface Reduction technology — and sits alongside whatever endpoint stack you already run:

    1. Kickoff and behavioral learning. PHASR builds behavioral profiles for every machine-user pair, typically over 30 days.
    2. Attack Surface Dashboard review. You receive an exposure score (0–100) and a prioritized list of findings across five categories: living-off-the-land binaries, remote admin tools, tampering tools, cryptominers, and piracy tools — each mapped to the specific users and devices they affect.
    3. Optional reduction sprint. Apply controls manually or let PHASR’s Autopilot enforce them. Users can request access back through a built-in one-click approval workflow.
    4. Reduction review. A final session quantifies how much surface you’ve shrunk and what shadow IT and unauthorized binaries surfaced along the way.

    Early-access customers have reduced their attack surface by 30% or more in the first 30 days, with one reporting close to 70% by locking down LOLBins and remote tools — without investigation overhead or end-user disruption.

    What It Means for Different Stakeholders

    • For the CISO: a defensible, board-ready exposure number that moves week over week, mapped to behaviors attackers actually use.
    • For the SOC and IT admin: up to 50% less investigation and response workload, because entire classes of suspicious-but-legitimate behavior simply don’t occur on endpoints that don’t need them.
    • For the business decision-maker: documented, ongoing surface reduction — increasingly what regulators, auditors, and cyber-insurers want to see.

    Start Where the Attackers Already Are

    The previous article ended on a principle: the most significant risks are no longer external or unknown — they’re already inside your environment. This one ends on a practice: you can have a precise, prioritized map of those risks within 45 days, at no cost, without changing your existing stack.

    If you run a Windows-heavy environment with 250 or more users, request your Internal Attack Surface Assessment here. Compromises will keep happening. Whether one becomes a breach depends almost entirely on what an attacker can reach once they’re in. The fastest way to shorten that list is to look at it.

    Found this article interesting? This article is a contributed piece from one of our valued partners. Follow us on Google News, Twitter and LinkedIn to read more exclusive content we post.

    attack days real Surface Tools Watching
    Follow on Google News Follow on Flipboard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    Previous ArticleUPDATE | Diesel price drop possible in June
    Next Article X agrees to crack down on illegal hate and terror content in the UK
    admin
    • Website

    Related Posts

    WhatsApp, Slack Notifications Could Hijack Google Gemini on Android

    June 3, 2026

    Opinion | Musk and Trump Slashed Aid. Now We Lack Tools to Tackle Ebola.

    June 3, 2026

    The Real Reason Amazon Moved Its Prime Day to June This Year

    June 3, 2026
    Leave A Reply Cancel Reply

    Demo
    Latest Posts

    WiiM expands its whole-home ecosystem with a new soundbar

    How to Avoid Traffic at Yosemite National Park’s Entrances

    Iran Attacks Kuwait International Airport, U.S. Strikes Qeshm Island

    House Votes to End Iran War, in a Bipartisan Rebuke to Trump

    Latest Posts

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    Advertisement
    Demo

    We are a digital news platform delivering timely, accurate, and insightful coverage of politics, global affairs, business, economy, sports, and more. Our mission is to keep readers informed with reliable news, clear analysis, and stories that truly matter.
    We're social. Connect with us:

    Facebook X (Twitter) Instagram Pinterest YouTube

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.

    Powered by
    ...
    ►
    Necessary cookies enable essential site features like secure log-ins and consent preference adjustments. They do not store personal data.
    None
    ►
    Functional cookies support features like content sharing on social media, collecting feedback, and enabling third-party tools.
    None
    ►
    Analytical cookies track visitor interactions, providing insights on metrics like visitor count, bounce rate, and traffic sources.
    None
    ►
    Advertisement cookies deliver personalized ads based on your previous visits and analyze the effectiveness of ad campaigns.
    None
    ►
    Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.
    None
    Powered by