As a network-based threat detection solution, Attivo BOTsink stands guard inside the business network, using high-interaction deception and decoy technology to lure attackers into engaging and revealing themselves. Through misdirection of the attack, the vendor states organizations gain the advantage of time to detect, analyze, and stop an attacker.
Attivo BoTsink was selected based on cost price and wide coverage of detection capabilities. Our decision was primarily based on reducing efforts to identify and mitigation of attacks. The ease of deployment was additional factor in decision making. As compared to Zscaler …
It is best suited when deployed at perimeter and integrated with SIEM and SOAR solution. It will be able to replicate assets and display realistic configurations making difficult for hackers. We were able to avoid or block 40% of attacks targetted to our critical servers and could easily identify threat actors.
Attivo BoTsink was selected based on cost price and wide coverage of detection capabilities. Our decision was primarily based on reducing efforts to identify and mitigation of attacks. The ease of deployment was additional factor in decision making. As compared to Zscaler Deception and SentinelOne Singularity I found Attivo BoTsink detects more threats