Kaspersky Lab
Moscow-founded endpoint protection and threat-research vendor banned from sale in the United States since 2024 under a Commerce Department national-security determination.
Visit Website ↗ + Add to CompareOverview
Kaspersky is a Moscow-founded, globally distributed endpoint protection and threat-intelligence vendor whose research arm (GReAT) has produced some of the industry’s most cited nation-state malware discoveries, including early public analysis of Stuxnet, Regin, and the Equation Group toolset. Founded in 1997 by Eugene Kaspersky, the company built its reputation on antivirus engine quality and threat research depth, and has more recently pushed its B2B line, Kaspersky Next, into EDR, XDR, and AI-assisted SIEM, reporting 2025 revenue of roughly $836 million with B2B product sales up 16% year over year.
The fact that cannot be separated from any evaluation of Kaspersky in a U.S. context: in June 2024 the U.S. Commerce Department issued a first-of-its-kind determination banning Kaspersky from selling antivirus and cybersecurity products or services in the United States, citing Russian government capability and intent to weaponize the company’s access for espionage. The prohibition on new U.S. sales took effect September 29, 2024, and Kaspersky formally exited the U.S. market that July. This is an independently confirmed regulatory action, not a competitor’s allegation, and it makes Kaspersky effectively unusable for any U.S.-regulated or U.S.-headquartered organization regardless of the product’s technical merit.
Outside the U.S., Kaspersky remains a large, technically capable, and commercially growing vendor, particularly in Europe, Latin America, the Middle East, and Asia, and its threat research continues to be referenced by the broader security community even where its products cannot be deployed. For a U.S.-focused CISO audience, Kaspersky is best understood as a case study in geopolitical supply-chain risk as much as a product to evaluate.
Innovation Matrix Assessment
Kaspersky Next (EDR/XDR) grew 158% year over year and its AI-powered SIEM grew 30% in 2025 per company financial disclosures, indicating active product investment in newer detection-and-response categories.
Runs a broad global endpoint-to-XDR product line plus the GReAT threat research team, but the September 2024 U.S. Commerce Department sales ban removes the entire U.S. market from its operational reach, a significant real-world constraint on deployability.
2025 revenue grew 4% overall to roughly $836 million with 16% B2B growth, but the company is simultaneously absorbing the loss of its U.S. business and reputational damage from the ban, netting out to modest, geographically uneven momentum.
A 28-year-old, large, established antivirus and endpoint incumbent; per this site's convention, scaled legacy vendors score low on disruption regardless of technical quality, and the U.S. ban removes any disruptive relevance to this audience specifically.
Kaspersky's malware research (Stuxnet, Regin, Equation Group analyses) is independently well-regarded and frequently cited across the industry, but the U.S. government's own national-security determination is a documented, independently verified trust concern that any efficacy score must weigh alongside technical capability.
Kaspersky products cannot legally be sold to U.S. persons or deployed by U.S.-regulated organizations as of September 29, 2024, per Commerce Department action; for this site's U.S.-focused CISO audience, relevance is scored near zero regardless of the product's technical merit elsewhere in the world.
Why CISOs Should Care
For non-U.S. organizations, Kaspersky remains a technically capable endpoint and threat-intelligence option; for U.S.-based CISOs, it is legally off the table and relevant primarily as a supply-chain and geopolitical risk case study.
What Makes It Different
Combines a large commercial endpoint/XDR business with one of the industry's most cited nation-state threat research teams, but is uniquely constrained by an outright U.S. sales prohibition that no competitor on this list faces.
The Matrix Verdict
42/100 — EMERGING / UNRANKED
A technically capable, globally significant vendor whose relevance to this site's primarily U.S. audience is overridden by a confirmed federal ban on sale and use in the United States; scored accordingly as a risk case study rather than a viable U.S. procurement option.
Editorial Note: Claims vs. Verified Findings
The U.S. Commerce Department ban, its effective date, and Kaspersky's market exit are independently confirmed via federal government action (BIS) and multiple press outlets — this is the single most important, independently verified fact in this profile. 2025 revenue and product growth figures are company-reported financial results and have not been independently audited; GReAT research credibility is corroborated by widespread third-party industry citation.
Sources
Alternatives to Kaspersky Lab
Abnormal AI
AI-native behavioral security platform that analyzes sender identity and communication patterns, rather than message content alone, to stop…
Palo Alto Networks Cortex XSIAM
Palo Alto Networks' AI-driven 'autonomous SOC' platform that unifies SIEM, EDR, SOAR, and attack-surface data into a single…
Fenix24
Chattanooga-based ransomware recovery specialist that has restored operations after 500+ real-world incidents, including 30 Fortune 500 companies.
Torq
AI-native hyperautomation platform positioning itself as an 'agentic SOC,' using a multi-agent system to autonomously execute large volumes…
Microsoft Sentinel
Microsoft's cloud-native SIEM, deeply integrated with Azure and Microsoft 365 telemetry, now layering agentic AI (Security Copilot/Sentinel agents)…
Sophos
Sophos is a UK-founded, Thoma Bravo-owned cybersecurity vendor unifying endpoint protection, network firewalls, and managed detection and response…