Source: Infosecurity Magazine
Author: Kevin Poireault
URL: https://www.infosecurity-magazine.com/news/cyber-vendors-pull-out-mitre/
ONE SENTENCE SUMMARY:
Major cybersecurity providers withdrew from MITRE’s 2025 EDR test, citing product innovation focus and concerns over test relevancy.
MAIN POINTS:
- Microsoft, SentinelOne, and Palo Alto withdrew from MITRE’s 2025 EDR evaluation.
- Concerns arise about the program’s future and relevance.
- The companies prioritize product development over participation.
- MITRE’s test increasingly viewed as promotional rather than achieving security gains.
- ATT&CK framework was introduced in 2015 by MITRE for mapping cyber adversaries.
- Testing uses simulated attacks with MITRE’s Caldera platform.
- Tests are not a longitudinal benchmark due to annual differences.
- 2025 scenarios include financially motivated and Chinese-aligned cyber-espionage actors.
- MITRE plans to re-establish its vendor forum in 2026.
- Despite withdrawals, a dozen vendors engaged with the 2025 test.
TAKEAWAYS:
- Test participation demands significant resources from cybersecurity companies.
- Increasingly challenging tests may impact participation decisions.
- MTIRE intends to address concerns by reviving the vendor forum.
- Tests are criticized as being more about PR than real security gains.
- Ongoing participation signals the value of these evaluations to some vendors.