ExtraHop Reveal(x) vs Lastline Defender comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

ExtraHop Reveal(x)
Ranking in Network Traffic Analysis (NTA)
5th
Ranking in Network Detection and Response (NDR)
5th
Average Rating
8.6
Number of Reviews
12
Ranking in other categories
No ranking in other categories
Lastline Defender
Ranking in Network Traffic Analysis (NTA)
18th
Ranking in Network Detection and Response (NDR)
16th
Average Rating
8.6
Number of Reviews
2
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of June 2024, in the Network Traffic Analysis (NTA) category, the mindshare of ExtraHop Reveal(x) is 13.8%, up from 8.4% compared to the previous year. The mindshare of Lastline Defender is 0.8%, down from 1.0% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Network Traffic Analysis (NTA)
Unique Categories:
Network Detection and Response (NDR)
12.3%
 

Featured Reviews

John Boake - PeerSpot reviewer
Jul 11, 2022
Does full decryption at 100 Gbps, reduces our MTTR, and has great analytics
Agent management could certainly use some focus. It should also be a little bit easier to work with collections. We should be able to nest collections within collections. There should be better nesting. The beautiful thing about the company that runs ExtraHop is that when we go to them with feature requests or with things that we would like to see, they're really good at getting them added. The most recent one that we're looking for is being able to limit the packets that users can download. So, if you're an administrator, you should be able to download a full packet capture with the full packet, but if you're just an engineer or an application person just looking at your application header traffic, you don't need to see any payload data. We want to be able to limit that traffic. We want to limit who can see the payload, and we can do that. The vendor is putting that into the tool for us. It's going to be done before the end of the year.
DS
Dec 10, 2014
A better way to do breach detection using advanced sandboxing methods
The Internet is a nasty place, and getting nastier. Current breach detection products using traditional anti-malware sandbox technologies can’t keep up with advanced persistent and hyper-evasive threats that pummel enterprise networks on an hourly basis. Malware authors encode their exploits with a number of operational vectors, so in case one entry point doesn’t work they can still find a way into your network to do their dirty work. And as more businesses hire more outsourced consultants, part-time workers, and employ mobile devices, they open up additional mechanisms for malware to enter their corporate networks. Some traditional AV and endpoint protection vendors have responded to these threats by adding features to their security products to do a better job of anticipating badly behaving packets coming through their detectors. They make use of limited virtual machines or operating system emulators to view how a piece of malware operates. That is great, but it isn’t enough. Many malware authors can detect when these simulated environments are active and can evade detection accordingly. For example, some exploits such as W32.DelfInj can literally go to sleep for several days to avoid any detector that will just scan an infected system for the first several minutes. What is needed is a next-generation sandbox that can correlate a series of particular breach events add IP and object based reputation analysis and do this in near real-time. This is what the Lastline Breach Detection Platform does. What makes them unique is their range of discovery, the way they can effectively mimic actual PC or smartphone endpoints to examine malware behavior. Download my full review of their system here.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pricing and Cost Advice

"I would rate the price a three out of five. It could be less expensive."
"I rate the price of ExtraHop Reveal(x) a seven on a scale of one to ten, where one is a high price, and ten is a low price."
"I rate ExtraHop Reveal(x) six out of 10 for affordability. We pay for an annual license. It's always one of those trade-offs. You get a lot of value, but ExtraHop isn't exorbitantly priced. You can pay extra for additional features like the ability to decode HL7 traffic, which is crucial for EMR environments."
"The solution is based on an annual subscription model and is expensive."
Information not available
report
Use our free recommendation engine to learn which Network Traffic Analysis (NTA) solutions are best for your needs.
787,779 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
16%
Financial Services Firm
15%
Government
7%
Manufacturing Company
6%
Computer Software Company
19%
Financial Services Firm
13%
Government
13%
Transportation Company
10%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What is the best network monitoring software for large enterprises?
We just did an assessment for our 47 datacenters around North America. The top two enterprise-level network monitoring solutions were ExtraHop first, Riverbed SteelCenter second. Their negotiated c...
What open source tool can one use to measure bandwidth from one's upstream service provider?
One I am looking closely at is AppNeta. They have an appliance that can digest the flow and do a better job than Netflow. The other one we are using is ExtraHop. This has both a Datacenter Hig...
What do you like most about ExtraHop Reveal(x)?
With ExtraHop Reveal(x), it gives me more visibility into the packets. It doesn't provide the entire packet capture, but it offers more information on how connections are made at the network layer....
Ask a question
Earn 20 points
 

Also Known As

Reveal(x), Revealx
No data available
 

Learn More

Video not available
 

Overview

 

Sample Customers

Wood County Hospital
CKE Restaurants Inc., WatchGuard, S&P 400 Financial Services Leader, Hewlett Packard, Gwinnett County Public Schools, Aerospace Innovator, Global Media Conglomerate, Cellopoint
Find out what your peers are saying about ExtraHop Reveal(x) vs. Lastline Defender and other solutions. Updated: May 2024.
787,779 professionals have used our research since 2012.