{"id":1236,"date":"2018-01-16T10:01:23","date_gmt":"2018-01-16T14:01:23","guid":{"rendered":"https:\/\/solutionsreview.com\/security-information-event-management\/?p=1236"},"modified":"2018-02-23T11:31:04","modified_gmt":"2018-02-23T15:31:04","slug":"key-findings-alienvaults-open-threat-exchange-platform-reports-exploits","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/","title":{"rendered":"Key Findings from AlienVault&#8217;s Open Threat Exchange Platform Reports on Exploits"},"content":{"rendered":"<p style=\"text-align: justify\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-1237 size-full\" src=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod.jpg\" alt=\"alienvault OTX report exploits\" width=\"800\" height=\"400\" srcset=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod.jpg 800w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod-300x150.jpg 300w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod-768x384.jpg 768w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod-540x270.jpg 540w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod-162x81.jpg 162w, https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod-360x180.jpg 360w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">California-based <\/span><a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/top-6-siem-vendors-watch-2018\/\" target=\"_blank\" rel=\"noopener\"><span style=\"font-weight: 400\">SIEM vendor<\/span><\/a><span style=\"font-weight: 400\"> AlienVault records the anonymised security event information from their customers as well as the reports from other vendors in the field through their Open Threat Exchange (OTX) platform. The aim for this collaboration is to generate findings for mutual improvement in efficiency and comprehensiveness in their solutions. To help the layperson, AlienVault also uses these findings to report on the evolution of the digital threat landscape.<\/span><\/p>\n<div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a href=\"https:\/\/solutionsreview.com\/security-information-event-management\/security-information-event-management-vendor-map\/\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" src=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2020\/02\/SIEM_VM_SB.jpg\" alt=\"Download Link to SIEM Vendor Map\" width=\"800\" height=\"100\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Today, AlienVault releases the first part of their 2017 findings, focused on systems exploits. The second part will zero in on malware of concern and trends, and the third will delve into bad third-party actors. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Here are some of the key findings from Part 1: <\/span><\/p>\n<h3 style=\"text-align: justify\"><b>Exploit Proliferation is Increasing<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Hacking is a global threat, and AlienVault\u2019s findings show that global truly means global. The most popular exploit in the world\u2014CVE-2017-0199\u2014has appeared in attacks originating from places as diverse as North Korea, China, Iran, and Russia. Criminal organization from across the world have also participated in exploit abuse. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">According to the results, malicious activity from actors in China have decreased whereas hacks from North Korea and Russia have increased. <\/span><\/p>\n<h3 style=\"text-align: justify\"><b>Exploits Have a Long Shelf Life <\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Even while detection and response efforts have seen a steady uptick in recent years, hackers can abuse the same exploits for years after their discovery and subsequent \u201cpatch.\u201d One of the most popular exploits, cataloged as CVE-2012-0158, has been the means of cyberattack for the past decade. Another has been in use since at least 2010 and had a brief surge in popularity in 2015. <\/span><\/p>\n<h3 style=\"text-align: justify\"><b>The Most Popular Exploits Utilize Microsoft Programs<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">This is in part because of Microsoft is omnipresent in the computing world. If an exploit can get past their security processes it can spread like wildfire and threaten servers and programs around the world. <\/span><\/p>\n<h3 style=\"text-align: justify\"><b>These Findings Only Scratch the Surface <\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Even though thousands of exploits are cataloged every year, thousands more go unreported or unnoticed. This may be part of the new paradigm of <\/span><a href=\"https:\/\/solutionsreview.com\/endpoint-security\/the-expanded-glossary-of-digital-threats\/\" target=\"_blank\" rel=\"noopener\"><span style=\"font-weight: 400\">malwareless attacks<\/span><\/a><span style=\"font-weight: 400\"> exploiting natural processes to bypass security detection tools.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">You can read more about part 1 of the report <a href=\"https:\/\/www.alienvault.com\/blogs\/security-essentials\/otx-trends-part-1-exploits\" target=\"_blank\" rel=\"noopener\">here<\/a>.<\/span><\/p>\n<br \/>Widget not in any sidebars<br \/>\n","protected":false},"excerpt":{"rendered":"<p>California-based SIEM vendor AlienVault records the anonymised security event information from their customers as well as the reports from other vendors in the field through their Open Threat Exchange (OTX) platform. The aim for this collaboration is to generate findings for mutual improvement in efficiency and comprehensiveness in their solutions. To help the layperson, AlienVault [&hellip;]<\/p>\n","protected":false},"author":41,"featured_media":1237,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[551,1],"tags":[175,95,112,518,21,22],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Key Findings from AlienVault&#039;s OTX Platform Reports on Exploits<\/title>\n<meta name=\"description\" content=\"AlienVault released the first part of their 2017 OTX Report findings, based on off anonymised customer data and focused on systems exploits.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Key Findings from AlienVault&#039;s OTX Platform Reports on Exploits\" \/>\n<meta property=\"og:description\" content=\"AlienVault released the first part of their 2017 OTX Report findings, based on off anonymised customer data and focused on systems exploits.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/\" \/>\n<meta property=\"og:site_name\" content=\"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors\" \/>\n<meta property=\"article:published_time\" content=\"2018-01-16T14:01:23+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2018-02-23T15:31:04+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"800\" \/>\n\t<meta property=\"og:image:height\" content=\"400\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Ben Canner\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Ben Canner\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/\",\"name\":\"Key Findings from AlienVault's OTX Platform Reports on Exploits\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod.jpg\",\"datePublished\":\"2018-01-16T14:01:23+00:00\",\"dateModified\":\"2018-02-23T15:31:04+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\"},\"description\":\"AlienVault released the first part of their 2017 OTX Report findings, based on off anonymised customer data and focused on systems exploits.\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod.jpg\",\"width\":800,\"height\":400,\"caption\":\"alienvault blog Q1 2018\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/security-information-event-management\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Key Findings from AlienVault&#8217;s Open Threat Exchange Platform Reports on Exploits\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#website\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/\",\"name\":\"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors\",\"description\":\"Buyer&#039;s Guide and Best Practices\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/security-information-event-management\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\",\"name\":\"Ben Canner\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"caption\":\"Ben Canner\"},\"description\":\"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.\",\"url\":\"https:\/\/solutionsreview.com\/security-information-event-management\/author\/bcanner\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Key Findings from AlienVault's OTX Platform Reports on Exploits","description":"AlienVault released the first part of their 2017 OTX Report findings, based on off anonymised customer data and focused on systems exploits.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/","og_locale":"en_US","og_type":"article","og_title":"Key Findings from AlienVault's OTX Platform Reports on Exploits","og_description":"AlienVault released the first part of their 2017 OTX Report findings, based on off anonymised customer data and focused on systems exploits.","og_url":"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/","og_site_name":"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors","article_published_time":"2018-01-16T14:01:23+00:00","article_modified_time":"2018-02-23T15:31:04+00:00","og_image":[{"width":800,"height":400,"url":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod.jpg","type":"image\/jpeg"}],"author":"Ben Canner","twitter_misc":{"Written by":"Ben Canner","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/","url":"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/","name":"Key Findings from AlienVault's OTX Platform Reports on Exploits","isPartOf":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod.jpg","datePublished":"2018-01-16T14:01:23+00:00","dateModified":"2018-02-23T15:31:04+00:00","author":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541"},"description":"AlienVault released the first part of their 2017 OTX Report findings, based on off anonymised customer data and focused on systems exploits.","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/#primaryimage","url":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod.jpg","contentUrl":"https:\/\/solutionsreview.com\/security-information-event-management\/files\/2018\/01\/alienvault-mod.jpg","width":800,"height":400,"caption":"alienvault blog Q1 2018"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/key-findings-alienvaults-open-threat-exchange-platform-reports-exploits\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/security-information-event-management\/"},{"@type":"ListItem","position":2,"name":"Key Findings from AlienVault&#8217;s Open Threat Exchange Platform Reports on Exploits"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#website","url":"https:\/\/solutionsreview.com\/security-information-event-management\/","name":"Best Information Security SIEM Tools, Software, Solutions &amp; Vendors","description":"Buyer&#039;s Guide and Best Practices","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/security-information-event-management\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541","name":"Ben Canner","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/security-information-event-management\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","caption":"Ben Canner"},"description":"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.","url":"https:\/\/solutionsreview.com\/security-information-event-management\/author\/bcanner\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts\/1236"}],"collection":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/users\/41"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/comments?post=1236"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/posts\/1236\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/media\/1237"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/media?parent=1236"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/categories?post=1236"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/security-information-event-management\/wp-json\/wp\/v2\/tags?post=1236"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}