• Skip to main content
  • Skip to header right navigation
  • Skip to site footer
iGuRu

iGuRu

Real-time Technology News. Opinions & Tweaks

  • / news
  • / tools
  • / tweaks
  • / dummies
  • / opinions
  • / support
  • / yourpost
home / News / Microsoft Defender is now detecting Zerologon attacks

Microsoft Defender is now detecting Zerologon attacks

01/12/2020 10:05 by Anastasis Vasileiadis

Microsoft has added support for Zerologon detection to Microsoft Defender for Identity to allow Operations Security teams to detect attacks within the company that attempt to exploit this critical vulnerability.

Screenshot 2020 12 01 Microsoft Defender for Identity now detects Zerologon attacks1 - Microsoft Defender now detects Zerologon attacks

Microsoft Defender for Identity (formerly known as Azure Advanced Threat Protection or Azure ATP) is a cloud-based security solution designed to utilize indoor Active Directory signals to detect and analyze compromised identities, advanced threats, and malware. confidential information activity targeting a registered organization.

"Microsoft Defender for Identity can detect this vulnerability early on," said Microsoft Program Manager Daniel Naim. "It covers both aspects of exploiting and controlling the circulation of Netlogon."

Notifications that appear whenever exploit Zerologon or related activity is detected will allow SecOps teams to quickly receive information about the device or domain controller behind attack attempts.

Alerts will also provide information that can help identify targeted information if the attacks were successful.

"Finally, customers using Microsoft 365 Defender can take full advantage of the strength of Microsoft Defender for Identity signals and alerts, combined with behavioral events and crawls from Microsoft Defender for Endpoint," Naim added.

"This coordinated protection allows you to not only monitor your efforts to exploit Netlogon over network protocols, but also view the device process and file activity associated with exploit."

Screenshot 2020 12 01 Microsoft Defender for Identity now detects Zerologon attacks - Microsoft Defender now detects Zerologon attacks

Microsoft Defender is now detecting Zerologon attacks was last modified: 1 December, 2020, 10: 05 am by Anastasis Vasileiadis

spread the news

  • Facebook
  • Twitter
  • Reddit
  • Printing
  • Email

Read them Technology News from all over the world, with the validity of iGuRu.gr

Follow us on Google News


Competition: Newstag: microsoft defender, Zerologon

You May Also Like

Do you have the secure version of Microsoft Defender?
Microsoft warns again of Windows Zerologon attacks
Microsoft Defender ATP with reports of vulnerable devices

About Us Anastasis Vasileiadis

Translations are like women. When they are beautiful they are not faithful and when they are faithful they are not beautiful.

Previous Post: « Windows 10 Cyber ​​Week 2020 Offers Up to 95% Discount
Next Post: GG-AESY hide files in images »

Reader Interactions

Comment Policy:

IGuRu.gr does not publish the comments immediately. Malicious comments, comments that include ads, or comments that are offensive are deleted without notice. We do not adopt the opinions expressed by our readers.
Your comments will be displayed after approval by the administrators


Leave your comment
Ακύρωση απάντησης

Your email address is not published. Τα υποχρεωτικά πεδία σημειώνονται με *

 

 © 2021 · iGuRu.gr · ☢ · Keep It Simple Stupid Genesis theme

about  ·   get in touch  ·  rss  ·  sitemap  ·  cough

loading Cancel
Could not post post - check your email address!
Email verification failed, please try again
Your blog can not post posts via email.