Gartner defines adversarial exposure validation (AEV) as technologies that deliver consistent, continuous and automated evidence of the feasibility of an attack. These technologies confirm how potential attack techniques would successfully exploit an organization and circumvent prevention and detection security controls. They achieve this by performing attack scenarios and modeling or measuring the outcome to prove the existence and exploitability of exposures. AEV is generally delivered as a SaaS solution with or without on-premises agents. AEV technologies provide automated execution of both simplified and/or extensible attack scenarios. Results data from an executed attack scenario is used for various outcomes, such as: validating a theoretical exposure as real, automating frequent controls testing, improving preventive security posture or improving detection and response capabilities.
Brand Protection Software is designed to monitor and detect infringements related to a company’s brand, employees, and products or services. These infringements may include fake domains, phishing websites, rogue or counterfeit apps, and impersonation through social media accounts. It also covers the unauthorized sale of counterfeit goods on online marketplaces, as well as misuse of company logos, images, and other intellectual property. The analytics generated by brand protection tools offer insights into a brand’s exposure and provide actionable recommendations to enhance its online presence. This is supported by holistic workflows and interactive reporting features that improve content management. Additionally, brand protection may involve sentiment analysis and narrative intelligence to assess public perception and identify any targeted disinformation campaigns. These solutions help organizations prevent reputational harm and financial losses resulting from fraud and cybercrime. These solutions are primarily used by teams across security, fraud, trust, brand, marketing, and legal functions within an organization.
External attack surface management (EASM) refers to the processes, technology and professional services deployed to discover internet-facing enterprise assets and systems and exposures that could be exploited by malicious threat actors. EASM is useful in identifying unknown assets and providing information about the organization’s systems, cloud services and applications that are available and visible in the public domain and therefore can be exploited by an attacker/adversary. This visibility can also be extended to the organization’s subsidiaries or third parties. EASM are most commonly cloud-based products and services but can also be delivered ‘as a service’. EASM appeals to security operations functions involved with penetration testing, vulnerability management and threat hunting who want better visibility of their internet-facing assets to complement their threat and exposure management program.