logo

Report: we’ll know antivirus is dead when it goes quiet

ID: 9f122fcd-9952-52cc-a69d-ec5bd8a3337a

STIX ID: report--9f122fcd-9952-52cc-a69d-ec5bd8a3337a

Feed Name: Security Ledger

Threat Score
60/100

Date Published: 2017-04-27

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

#### Executive summary SentinelOne's Enterprise Risk Index reports a marked increase in file-less, in-memory attacks (rising from ~7% to ~16%) while file-based incidents declined, with adversaries leveraging native Windows components (PowerShell, WMI, cmd.exe) to execute and persist without writing payloads. The article warns this trend undermines signature-based antivirus and network detection, notes lower submit/detection rates to services like VirusTotal, and describes how both sophisticated APTs and lower-skilled criminal groups/malware families are adopting these tactics.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.