Proof & Evaluation
Evidence, testing, and evaluation guidance - documented results, how to run a meaningful proof of concept, and what to ask any prevention vendor.
Does Cyber Crucible pass ransomware simulation tests?
The best answer is…it depends on the quality and accuracy of the ransomware simulations, but...
Does Cyber Crucible have false positives? What is the false positive rate?
Cyber Crucible strives for a 0 false positive product environment. Having said that, ther...
Does Cyber Crucible test all possible ransomware exhaustively?
Cyber Crucible operates off of kernel level behavioral modeling, to discover data theft, ...
What evidence is there that Cyber Crucible actually stops attacks?
Short answer: Documented customer deployments, independent testing by a major accounting and advi...
How should we run a proof of concept for a prevention tool?
Short answer: Deploy it alongside your existing stack in a real production environment and compar...
What questions should we ask any endpoint security vendor?
Short answer: Ask where decisions are made, what happens without connectivity, what the tool depe...
What happened to the security industry's "dumb collector" model?
Short answer: For years vendors advised that local endpoint processing was obsolete and pushed li...
Why does intent-based prevention generate less alert noise than signature-based detection?
Short answer: Because it asks a narrower question. Signature and heuristic tools alert whenever s...