Le Lézard
Classified in: Science and technology
Subjects: PDT, POL

Delve Labs Launches Public Vulnerability Threat Intelligence Feed


MONTREAL and NEW YORK, July 7, 2020 /PRNewswire/ -- Delve Labs, the vulnerability management solution leveraging machine learning to automate vulnerability management scanning and prioritization, has released a free, public vulnerability threat feed that identifies newly-published vulnerabilities that are likely to have an exploit published in the near future, and also identifies vulnerabilities that are closely related to security topics trending in the community.

A key element of Delve's intelligent vulnerability management solution is its machine-learning Contextual Prioritization, which evaluates 40-plus factors for each vulnerability on an enterprise network, numbering all vulnerabilities from 1 ton in order of remediation priority, giving IT and security teams a clear order for their remediation activities. Two of those 40-plus factors are 1) whether or not a vulnerability is likely to have an exploit published for it when none exist at the current time, and 2) whether topics closely related to the vulnerability are trending in security community discussions or dark web forums. Delve is taking these two factors directly from its VM solution and making the results free for all.

"It's popular now to equate the likelihood a vulnerability will be exploited with remediation prioritization, but it's only a part of the equation," noted Serge-Olivier Paquette, Delve's Lead AI Researcher. "With this threat intelligence feed, we're making public less than 5% of the data we use to prioritize each vulnerability, not only to be good citizens of the information security community, but also to demonstrate how important it is to view prioritization in context. Potential exploitability is a useful element of prioritization, but it's not a panacea."

The Delve threat intelligence feed pulls the latest vulnerabilities from the National Institute of Standards and Technology (NIST) National Vulnerability Database (NVD), and applies its proprietary, machine learning-based Exploit Publication Predictor (EPP) engine to each new vulnerability, publishing the results on Delve Labs' new threat intelligence webpage. The feed lists the new vulnerabilities published by NIST in the past 30 days most likely to have an exploit developed, and is updated daily.

In addition, the Delve prioritization engine consumes data on ongoing conversations on social media, dark web sources, and other information security discussion boards, extracts popular topics, and then identifies vulnerabilities most closely related to those trending topics. Recent vulnerabilities with the highest VTS (Vulnerability Trending Score) are also listed on the Delve threat intelligence page.

The Delve threat intelligence feed is now live, and can be accessed publicly here.

About Delve Labs

Delve Labs (delvesecurity.com) is transforming the way enterprises conduct vulnerability management. By leveraging the power of Artificial Intelligence and machine learning, a view of each vulnerability in the context of its individual characteristics within the organization, the asset's importance, and external factors, Delve delivers a meaningful, prioritized list of vulnerabilities that enables teams to maximize vulnerability risk reduction while minimizing remediation activity. Delve Labs was founded in 2014 and has offices in Montreal, New York, and San Francisco.

Contact:  Jeff Hill, VP of Marketing, [email protected]  908-872-8560

Follow Delve Labs on LinkedIn:  linkedin.com/company/delve-labs

 

SOURCE Delve Labs


These press releases may also interest you

at 19:13
A surge in patent infringement by latecomers in the battery industry, and subsequent market distortion caused by unlicensed use of patented technology, calls for strong countermeasures to level the playing fieldLG Energy Solution believes that at...

at 19:05
Xaira Therapeutics launched today on a mission to help re-engineer the way we discover and develop medicines through the end-to-end application of emerging AI technologies. A joint incubation by ARCH Venture Partners and Foresite Labs, Xaira launched...

at 19:00
Visionary Holdings Inc. (the "Company") , a private education provider with technology of artificial intelligence and life science on the cutting edge, with subsidiaries in Canada and market partners in China, today announced on April 22, 2024, the...

at 19:00
The Kansas Proving Grounds at Great Plains Industrial Park, a leading facility for testing and innovation, is proud to announce its partnership with SkyscoutAI Innovations Inc., a pioneer in AI-powered wildfire detection and response using drones and...

at 19:00
UST, a leading digital transformation solutions company, today announced that it has acquired Strativity Group, a boutique strategy consultancy specialising in customer-centric transformations. Strativity is renowned for delivering customer...

at 18:45
IANS Research, the leading provider of independent research and advisory services for the information security industry, has announced a new strategic investment from the Apax Digital Fund II (the "Apax Digital Funds"). IANS is a widely recognized...



News published on and distributed by: