Yulevo
Home > Endpoint Security > Application Case
Manufacturing
Industry Endpoint
Security Case
Fully perceive endpoint
security and realize deep
threat detection and
response
01 /
Project Background
A large manufacturing user was attacked by a complex advanced persistent threat (APT). The attacker first controlled the endpoint through zero-day vulnerability and no-killing bypassing technologies. Meanwhile, it delivered variant viruses internally via the enterprise network to avoid the detection and killing of the existing terminal anti-virus engine. Due to the lack of detailed end-to-end behavior analysis and endpoint security situation awareness, it is difficult for the security operation team to complete the response quickly and comprehensively.
02 /
Demand Analysis
It is difficult for traditional desktop antivirus software to effectively detect and defend against advanced attacks such as fileless attacks, memory attacks and vulnerability attacks.

Meanwhile, the internal open sharing feature of enterprise networks also facilitates malicious horizontal attacks and virus transmission by compromised hosts. Moreover, once large quantities of terminals are compromised, attackers often carry out the next malicious attack on core business servers in the window period when security teams are overwhelmed with terminal handling.

03 /
Product Effect

Yulevo Sentry EDR helped users fully grasp the terminal asset ledger and establish a terminal risk assessment system, assisting users to fully perceive the endpoint security dynamics.

In addition, the product set detection anchor points in advance at the end-to-end attack position and attack links to realize deep detection of terminal threats, and provided more than 30 combined response handling methods to help the security team quickly complete one-click isolation and process termination of compromised terminals and malicious files, preventing them from further transmission and infection.