AV TEST
  • Tests
    • Home users
      • Windows Antivirus
      • MacOS Antivirus
      • Android Antivirus
    • Business users
      • Windows Antivirus
      • MacOS Antivirus
      • Android Antivirus
    • Internet of Things
      • Smart Home
      • IP cameras
      • Smart Watches & Fitness-Tracker
      • Other
      • All IoT tests
    • IT security product overview
  • News
    • Awards
    • Antivirus for Android
    • Antivirus for MacOS
    • Antivirus for Windows
    • Commissioned tests
    • Repair tests for Windows
    • Research
    • Internet of Things
    • Parental control
    • VPN tests
    • More tests
    • Other
  • Services
  • Resources
    • About the Institute
      • Institute
      • Certification
      • Test procedures
      • Jobs
    • Statistics
      • AV-ATLAS.org
      • Malware
      • Spam
    • Media
      • Press
      • Test Results
      • Publications
    • Newsletter
    • FAQ
  • Contact
    • Contact
    • Terms and conditions
    • Legal notice
    • Privacy policy

©  2026 AV-TEST  | SITS Deutschland GmbH

AV TEST AV TEST
  • Tests
    • Home users
    • Business users
    • Internet of Things
    • IT security product overview
    • Windows Antivirus
    • MacOS Antivirus
    • Android Antivirus
    • Windows Antivirus
    • MacOS Antivirus
    • Android Antivirus
    • Smart Home
    • IP cameras
    • Smart Watches & Fitness-Tracker
    • Other
    • All IoT tests

    Get in touch

    Please use the contact form below for inquiries to the AV-TEST Institute.

    Kontakt
  • News
    • Awards
    • Antivirus for Android
    • Antivirus for MacOS
    • Antivirus for Windows
    • Commissioned tests
    • Repair tests for Windows
    • Research
    • Internet of Things
    • Parental control
    • VPN tests
    • More tests
    • Other
    Service

    Network Threat Protection -
    Tested and certified by AV-TEST

    LEARN MORE >

    Get in touch

    Please use the following contact form for inquiries to the AV-TEST Institute.

    Kontakt
  • Services
  • Resources
    • About the Institute
    • Statistics
    • Media
    • Newsletter
    • FAQ
    • Institute
    • Certification
    • Test procedures
    • Jobs
    • AV-ATLAS.org
    • Malware
    • Spam
    • Press
    • Test Results
    • Publications

    Subscribe to the
    AV-TEST Newsletter

    Learn more
  • Contact
    • Contact
    • Terms and conditions
    • Legal notice
    • Privacy policy
  • IOT-TESTS.ORG
  • AV-ATLAS.ORG

Latest News

July 11, 2024 | Antivirus for Windows

Advanced EDR test 2024: Kaspersky Endpoint Detection and Response Expert

AV-TEST conducted a comprehensive evaluation of Kaspersky Endpoint Detection and Response Expert from December 2023 to March 2024. The evaluation focused on the effectiveness of the EDR component in detecting and neutralizing threats commonly associated with sophisticated actor groups known for advanced persistent threats (APTs). The evaluation included detailed test scenarios simulating two different attack patterns, each representing a wide range of tactics and techniques typically used by advanced attackers.

A test commissioned by Kaspersky

and carried out by AV-Test

Scenario 1 - APT18-like cyber espionage:

In this scenario, the system's resilience was tested against a well-coordinated attack by APT18, a group known for its sophisticated cyber espionage operations. The test recreated the group's known behaviors, such as spear phishing, system discovery, data collection and obfuscation methods. The main objective was to evaluate the product's ability to detect, respond to and mitigate sophisticated attack vectors to gain insight into corporate cybersecurity defenses.

In Scenario 1, Kaspersky Endpoint Detection and Response Expert demonstrated robust detection and blocking capabilities by successfully identifying and neutralizing all techniques across multiple attack stages. The product's effective monitoring and detection capabilities proved critical in defending against sophisticated cyber threats.

Kaspersky excelled in the quality of detection, providing detailed and actionable insights at every step. It was able to effectively categorize the techniques and provide comprehensive insight into the tactics and techniques of the attack. This performance underlines Kaspersky Endpoint Detection and Response Expert's ability to deal with complex cyber espionage attempts.

Scenario 2 - Mixed tactics similar to TA577, Turla and FIN6:

The second scenario mimicked the operational tactics of various notorious groups, including TA577, Turla and FIN6, and featured a complex mix of phishing, data manipulation and lateral movement techniques. The goal of this test was to evaluate the system's defenses against multi-layered and advanced threats designed to steal sensitive information and establish a long-term presence on the network.

Scenario 2 included a range of techniques. Kaspersky Endpoint Detection and Response Expert successfully detected and blocked all of these techniques, demonstrating its ability to adapt to different threat behaviors and effectively combat a wide range of cyber threats. The product's response to these scenarios confirmed its ability to protect systems from sophisticated and diverse attacks.

The overall performance of Kaspersky Endpoint Detection and Response Expert in both scenarios was impressive. The consistently high quality of detections and the blocking of all tactics and techniques underline the product's potential to protect organizations from evolving and complex cyber threats.

Based on the observed results, Kaspersky Endpoint Detection and Response Expert qualifies for the prestigious AV-TEST Approved Advanced Endpoint Detection and Response certification, which recognizes the product as a reliable and effective solution in the field of cyber security.

Download Report (PDF)

Current
test results

  • Windows
  • MacOS
  • Android
  • Archive

  • Windows
  • MacOS
  • Android
  • Archive

  • Smart Home
  • IP-Cameras
  • Smart Watches
  • Other
Service

Network Threat Protection - Tested and certified by AV-TEST

Learn more
Service

Threat Intelligence Platform by AV-TEST

Start AV-ATLAS.org
Service

AV-TEST and the Cyber Resilience Act

Learn more

Subscribe to the AV-TEST Newsletter

Sign up now
Subscribe to the AV-TEST Newsletter
Sign up now
AV TEST

Get in touch

For inquiries to the AV-TEST Institute, please use the contact form below.

To the contact form

Sitemap

  • Institute
  • Tests
  • News
  • Certification
  • Publications
  • Contact

Contact

  • SITS Deutschland GmbH
  • Konrad-Adenauer-Ring 33
  • E-Mail: info@av-test.com
  • Telefon: +49 391 6075460
  • Fax: +49 391 6075469

Terms and Conditions | Privacy policy | Legal Notice

©  2026 AV-TEST  | SITS Deutschland GmbH