Mars Security Launches Real-Time Intel-to-Detection Engine
Built by former offensive operators, the new capability converts advisories from CISA, Mandiant
Mars Security, founded by former offensive security experts, has launched Real-Time Intel-Based Detection, a system that transforms newly released threat intelligence into operational detection rules within minutes. This capability integrates threat advisories from agencies like CISA and Mandiant, converting them into MITRE ATT&CK-mapped detection rules across various telemetry platforms such as CrowdStrike, Wiz, Splunk, and cloud telemetry.
Each rule undergoes a backtest against the customer's own data for 30 days before deployment, ensuring accuracy. Mars Security claims to be the first platform to automate the complete process from threat advisory to production detection, requiring no additional data ingestion or modifications to existing security systems. This innovation directly addresses the significant delay between receiving threat intelligence and being able to detect it effectively, which often occurs within hours for attackers.
By automating this process, Mars Security aims to close the gap between being aware of a threat and being able to detect it, ensuring that security teams can respond promptly to potential cyber threats.
Written by urgent.news from HackerNoon's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.