Report: we’ll know antivirus is dead when it goes quiet
ID: 9f122fcd-9952-52cc-a69d-ec5bd8a3337a
STIX ID: report--9f122fcd-9952-52cc-a69d-ec5bd8a3337a
Feed Name: Security Ledger
#### Executive summary SentinelOne's Enterprise Risk Index reports a marked increase in file-less, in-memory attacks (rising from ~7% to ~16%) while file-based incidents declined, with adversaries leveraging native Windows components (PowerShell, WMI, cmd.exe) to execute and persist without writing payloads. The article warns this trend undermines signature-based antivirus and network detection, notes lower submit/detection rates to services like VirusTotal, and describes how both sophisticated APTs and lower-skilled criminal groups/malware families are adopting these tactics.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
