WithSecure unveils breakthrough in zero-day detection technology for Exposure Management

WithSecure media relations

WithSecure PR

New research highlights the power of telemetry-driven analysis in exposing zero-day threats – technology set to enhance WithSecure™ Elements Exposure Management capabilities.

WithSecure™ (formerly F-Secure Business) has announced a pioneering advancement in zero-day vulnerability detection through the innovative use of Endpoint Detection and Response (EDR) behavioral data for Exposure Management purposes. This approach enables organizations to identify and triage both known and previously undiscovered vulnerabilities by analyzing behavioral patterns, significantly enhancing proactive threat defense mechanisms.

The comprehensive study, carried out by WithSecure Intelligence, reveals that by analyzing behavior-based signals, such as anomalous process execution, unusual file access, and cross-system interactions, security systems can identify suspicious activity even in the absence of known indicators of compromise (IOCs). This represents a significant advancement in proactive threat discovery and vulnerability management.

“Our findings show that behavioral data holds untapped potential, not just for detecting active threats, but for revealing underlying software vulnerabilities before they are widely known,” says Jarno Niemelä, Principal Researcher at WithSecure. « By leveraging the rich behavioral data from EDR in combination with Exposure Management, we’re enabling organizations to stay ahead of emerging threats. »

This innovative research has already uncovered several previously unknown zero-day vulnerabilities which have since been made public, with more expected in the future. It reinforces the importance of shifting from reactive detection to behavior-driven proactive analysis that can anticipate attacker techniques rather than just responding to them. This piece of research has also resulted in the development of concrete technological features, which will be rolled out across the WithSecure Elements platform later in 2025.

WithSecure’s Elements Endpoint Detection and Response solution has already demonstrated robust capabilities in detecting sophisticated cyber threats, as evidenced by its performance in recent evaluations. For instance, in AV-TEST’s assessment, WithSecure Elements EDR successfully identified complex attack patterns associated with advanced persistent threat groups, showcasing its efficacy in real-world scenarios.

By integrating behavioral analytics into the WithSecure Elements Exposure Management solution, WithSecure empowers organizations to detect anomalies indicative of zero-day vulnerabilities, facilitating timely and effective responses.

Read more about the research here: https://labs.withsecure.com/publications/leveraging-edr-behavioral-data-for-zero-day-vulnerability-discovery-and-triage-of-known-vulnerabilities

Why organisations choose WithSecure

WithSecure combines advanced technology with genuine human expertise to protect what matters most. Whether you are securing a growing business or a complex organisation, we work alongside your team to deliver outcomes that last.

How it works

  1. Complete this form
  2. We will review your enquiry and be in touch
  3. Get the support or information you need

The Benefits

  • Fast, frictionless deployment. Our single-agent setup minimises disruption and delivers effective protection from day one.
  • A unified platform that scales with you. Endpoint, identity, cloud, and collaboration security in one place – no unnecessary complexity, no tool sprawl.
  • Compliance built in, not bolted on. NIS2, GDPR, and DORA alignment are embedded in the platform, turning regulatory requirements into a competitive advantage.
  • Round-the-clock expertise, whenever you need it. Every alert is handled by a security professional who understands the full context of your environment.
  • Security grounded in European values. Established in Finland in 1988 and operating fully under EU jurisdiction, our commitment to privacy and trust is structural, not cosmetic.
  • From reactive to proactive. Exposure Management and AI-powered threat detection identify and address risks before they become incidents.
  • A long-term security partner. We begin with a focused conversation and remain invested in your organisation’s security posture well beyond initial onboarding.