bg
Cybersecurity
20:19, 05 October 2026
views
2

Security Code Launches SecretNet EDR 1.3 With Device Trust Ratings

The platform's capabilities can help companies address potentially vulnerable points in their IT infrastructure faster.

Attackers are continually making cyberattacks more sophisticated and expanding the range of tools they use to compromise systems. Defenses need to evolve accordingly. As a result, more integrated security platforms are entering the market.

Following the Roadmap

Security Code recently announced the release of its new product, SecretNet EDR version 1.3. The system falls into the Endpoint Detection and Response (EDR) category and is designed to detect attacks on network endpoints and enable rapid response to threats.

According to the developers, the tool is evolving in line with a roadmap that calls for continued expansion of its behavioral analysis and event correlation capabilities. SecretNet EDR 1.3 continuously monitors activity on customers' servers and workstations, using multiple methods to detect threats. Its capabilities include rootkit detection, targeting malware that allows attackers to maintain access to a system while hiding their presence; YARA-based file system scanning; secure configuration monitoring for endpoints; signature-based network traffic analysis to detect suspicious activity; and automated responses to anomalies or malicious behavior.

Finding Vulnerable Devices

One of the major additions is a system for classifying devices across corporate IT infrastructure.

“One of the key features of the new version is a computer trust-rating mechanism. Based on the results of signature analysis, YARA-rule scanning and searches for hidden objects, the system assigns each device one of three statuses: ‘Trusted,’ ‘Acceptable’ or ‘Untrusted,’” said Dmitry Shatskov, commercial director at Security Code.

The approach gives administrators greater visibility into potentially vulnerable parts of their environments and allows them to make targeted changes to prevent threats. SecretNet EDR 1.3 also launches with support for integration with Kontinent ZTN Klient (Continent ZTN Client), a remote-access product. When a user connects to the corporate network, the access server can request a comprehensive device check. Based on the results, the system can either grant or block access.

New Updates and Certification

SecretNet EDR 1.3 is aimed primarily at enterprises managing large fleets of computers. EDR products are becoming particularly important as sophisticated attacks increase and threat actors make use of already compromised employee computers and servers.

Demand for Russian information security products increased in 2022 after foreign vendors left the market, creating demand for products that could operate without imported technology. Significant resources also went into developing EDR platforms. In 2023, for example, Positive Technologies introduced MaxPatrol EDR to protect endpoints and servers.

In 2024, endpoint security products saw a significant expansion in capabilities, including behavioral analysis, SIEM integrations, automated response and support for Russian operating systems.

In 2025, one of the key trends in enterprise security was the adoption of the Zero Trust model, in which access to resources depends not only on a username and password but also on the state of the device. The release of SecretNet EDR 1.3 therefore reflects the major trends that have taken shape over the past several years. Companies increasingly need tools that do more than respond to attacks already underway – they also need continuous device monitoring that can help prevent attacks before they happen.

The developers have already said that additional update packages are planned for the near future. These are expected to introduce a local event correlator and advanced search capabilities. Version 1.4, scheduled for release in the first quarter of 2027, is also expected to receive certification from Russia's Federal Service for Technical and Export Control (FSTEC).

Changes to the rating are recorded in the operational log, giving the security team a transparent view of the status of every endpoint at any given time. The rating can be used as an indicator when making decisions about access to corporate resources
quote
like
heart
fun
wow
sad
angry
Latest news
Important
Recommended
previous
next