-

ThreatDown Records 100% Malware Block Rate in 17 Consecutive AVLab Tests

Perfect record spans 7,600 in-the-wild malware samples as remediation time falls to zero

SANTA CLARA, Calif.--(BUSINESS WIRE)--ThreatDown, a leader in elite Managed Detection and Response (MDR), today announced that its ThreatDown Endpoint Protection + EDR solution blocked 100% of malware samples in the July 2026 Advanced In-The-Wild Malware Test conducted by the AVLab Cybersecurity Foundation. It is the 17th consecutive edition in which ThreatDown has recorded a perfect score.

Across those 17 tests, dating to November 2023, ThreatDown has neutralized 7,600 in-the-wild malware samples without a single system compromise. AVLab has awarded ThreatDown its EXCELLENT certificate in every edition, including after the foundation raised the qualifying threshold to a 99.6% block rate for 2026.

In the July round, ThreatDown blocked all 310 samples at the web layer—before any code executed—with an average remediation time of 0 seconds. The average across all tested products was 3.08 seconds. ThreatDown’s average remediation time has fallen from 100 seconds in March 2025 to zero in July 2026.

“Most of the organizations we protect don’t have a lab to run their own bake-offs. They have one or two people covering everything,” said Kendra Krause, General Manager of ThreatDown. “Independent testing is how those teams, and the partners who serve them, separate marketing claims from evidence. Seventeen editions without a miss is a record you can only build by showing up every time.”

AVLab has also named ThreatDown a 2026 Product of the Year and awarded it its TOP Remediation Time 2026 certification. The Advanced In-The-Wild Malware Test is conducted in accordance with AMTSO testing guidelines and complies with Microsoft Virus Initiative requirements.

Full July 2026 results are available here.

About ThreatDown

ThreatDown is a leader in elite Managed Detection and Response (MDR), purpose-built to empower resource-constrained security teams with high-efficacy protection, without the complexity. As attacks grow faster and more automated, ThreatDown pairs proprietary AI and threat research with analyst judgment to deploy in minutes to deliver high-efficacy protection. Recognized by MRG Effitas, AVLab, and G2, ThreatDown scales security operations to intercept sophisticated attacks at the speed of modern threats.

FAQs

Is ThreatDown a fit for an organization without a dedicated security team?

Yes. ThreatDown sells primarily through managed service providers and resellers, and its agent is designed to deploy in minutes and run without dedicated security staff. Independent lab results carry the most weight with buyers who have no realistic way to run their own product evaluations.

What is remediation time, and why should a buyer care about it?

AVLab measures the full window from the moment malware enters a system, through execution, to the point malicious activity is removed, including steps such as a reboot or a data rollback. ThreatDown’s 0-second score in July 2026 reflects that every sample was stopped at the web layer, so nothing executed and nothing had to be undone.

How credible is AVLab as a testing organization?

AVLab is an independent foundation that has tested endpoint security, EDR and XDR products since 2012. It is a member of the Anti-Malware Testing Standards Organization and a participant in the Microsoft Virus Initiative, and it publishes its full methodology, sample sets and per-product results so that findings can be verified.

Contacts

Media Contact
Treble
Katie Anne Hayes
threatdown@treblepr.com

ThreatDown


Release Versions

Contacts

Media Contact
Treble
Katie Anne Hayes
threatdown@treblepr.com

Social Media Profiles
More News From ThreatDown

ThreatDown Helps Eliminate the Blind Spots of Shadow AI and Shadow Identities

SANTA CLARA, Calif.--(BUSINESS WIRE)--ThreatDown, a leader in elite Managed Detection and Response (MDR), today announced a synchronized expansion of its AI and identity security capabilities to protect organizations from emerging, unmanaged risks. The company launched AI visibility, giving security and managed service provider (MSP) teams a full inventory of the AI tools running across their environments, while simultaneously extending its ITDR capabilities to secure non-human identities (NHI)...

ThreatDown Research: Guardrail-Free AI Has Gone Mainstream, Fueling a New Era of Cybercrime

SANTA CLARA, Calif.--(BUSINESS WIRE)--ThreatDown, a leader in elite Managed Detection and Response (MDR), today released its 2026 Cybercrime in the age of AI report, featuring new research that reveals that the AI tools enabling modern cybercrime are increasingly open, mainstream and difficult for defenders to monitor.While much of the AI security discussion has focused on future threats, ThreatDown researchers found that many of the technologies enabling AI-powered cybercrime are already openly...

ThreatDown Launches Identity Threat Detection and Response to Stop Credential-Based Attacks

SANTA CLARA, Calif.--(BUSINESS WIRE)--ThreatDown, the former corporate business unit of Malwarebytes, today announced the launch of ThreatDown Identity Threat Detection and Response (ITDR). ITDR is a new product that helps security teams monitor identities to detect suspicious activity, misconfigurations, and active attacks targeting user accounts and privileges. With native integrations for Microsoft Entra ID, Okta, and Active Directory, security teams gain unified visibility across hybrid ide...
Back to Newsroom