"Kaspersky Lab" presented an update to Kaspersky Managed Detection and Response (MDR). One of the main changes was the integration with Kaspersky Digital Footprint Intelligence, which allows for taking into account information about credential leaks when analyzing information security events.
According to the company, in 2025, about 25% of cyberattacks began with the use of compromised legitimate accounts. This method complicates the detection of attackers, as their actions may look like normal user activity.
After the update, Kaspersky MDR automatically correlates information about leaked logins and passwords with security events in real time. This helps to identify potentially compromised accounts earlier, prioritize incident investigations, and search for threats before a large-scale attack begins.
The system also introduced notifications about the status of protected assets. Administrators will be able to learn in advance about data collection or connection problems that could affect monitoring. Alert rules can be adapted to the specifics of the organization.
In addition, security service providers gained the ability to set expected license usage limits for clients. The update also added support for Kaspersky Embedded Systems Security for Linux 4.0, expanding the use of MDR in Linux-based environments.