White Paper Abstract:
Vulnerabilities and threats are being discovered at a pace that traditional exploit-based attack detection technology cannot meet. Vulnerability-focused detection technologies provide the solution to this problem with broader threat detection, fewer signatures, and day-zero detection capabilities. This paper describes the difference between exploit-focused and vulnerability-focused detection and how Cisco® intrusion prevention systems (IPSs) use vulnerability-focused detection to provide comprehensive threat protection.