Microsoft: Here’s how our technology disrupts ransomware and phishing attacks

developers-looking-at-a-monitor-in-an-office
Image: Getty/Luis Alvarez

Microsoft is expanding its cybersecurity suite, Microsoft 365 Defenderwith AI-based capabilities that can automatically detect and disrupt cyberattacks such as ransomware attacks and business email compromise (BEC) campaigns by quickly identifying and switching off the accounts or services being exploited by attackers.

In Depth:These experts are racing to protect AI from hackers. Time is running out

Successfully compromising and exploiting the right accounts can allow cyber criminals to gain access to the tools and privileges they need to encrypt a whole network of machines with ransomware in a short amount of time.

Meanwhile, BEC attacks— email attacks where employees are tricked into making financial transfers under false pretexts — can also occur in a short amount of time.

Both ransomware and BEC attacks can be very costly for victims. To help protect networks from cyberattacks, Microsoft is expanding the automatic attack disruption in Microsoft 365 Defenderwhich is powered by artificial intelligence-driven threat hunting and detection capabilities, which were first unveiled last year.

Also:The best VPN services

This capability uses high-confidence extended detection and response (XDR) signals across endpoints, identities, email, and software-as-a-service apps, to contain cybersecurity attacks quickly and effectively, to stop attacks, and limit the impact to the victim.

Microsoft is expanding its public preview of Microsoft 365 Defender, to help protect networks against ransomware and BEC attacks, two of the most common — and most costly — cybersecurity threats to businesses.

To prevent BEC attacks, automatic attack disruption detects attacks and removes the attacker’s access to the environment by switching off the compromised account, therefore limiting their ability to send fraudulent emails, preventing money transfers and financial losses.

And to prevent ransomware attacks, the technology isolates suspicious activity from a compromised device to prevent an attacker from using it to gain access to other machines and services that can be abused to spread the malicious payload.

Also:The ransomware problem isn’t going away, and these grim figures prove it

To ensure that the system isn’t actively quarantining false positives — and hindering legitimate users — Microsoft 365 Defender is trained with endpoint detection and response signals, along with insights from the continuous investigation of thousands of incidents by Microsoft’s research teams.

Action will only be taken if the activity has been properly examined by the AI powering the tool and, if it’s concluded that the activity is malicious, the automatic response actions are triggered against entities identified as compromised — preventing further attacks.

“This game-changing capability comes built-in with Microsoft 365 Defender and limits a threat actor’s progress early on — reducing the overall impact of an attack, from associated costs to loss of productivity,” said Eyal Haik, senior product manager at Microsoft.

Security

Note: This article have been indexed to our site. We do not claim legitimacy, ownership or copyright of any of the content above. To see the article at original source Click Here

Related Posts
The leading African tech moves from September 2023 thumbnail

The leading African tech moves from September 2023

1. Funding: Q3 brings in the lowest funding of the year In September 2023, 22 African tech startups raised $116.7 million across 22 fully disclosed* raises. Compared to August 2023’s $243.7 million total raise, this represents a 52.11% decrease.  This also represents a significant YoY decrease—about 69.6%—from September 2022 when African startups raised $383.4 million.
Read More
Magyar Közút: more and more electric car chargers are available on the roads thumbnail

Magyar Közút: more and more electric car chargers are available on the roads

A villanyautósok maximum 10 percet várnak egy-egy töltőállomáson foglaltság esetén. Miközben az elektromosautó-töltők földrajzi lefedettségével a válaszadóknak csak kevesebb mint negyede elégedett, alig vannak olyanok, akik szerint nehéz töltőt találni azok foglaltsága miatt - közölte a Magyar Közút Nonprofit Zrt. az elektromos autózásról szóló online kérdőív eredményeivel kapcsolatban. A közleményben felidézték, hogy az MVM Mobiliti…
Read More
Gaming Chromebooks are on the way with full RGB keyboards thumbnail

Gaming Chromebooks are on the way with full RGB keyboards

The next class of Chrome OS devices may be targeted at the gaming market – more than one Chromebook is set to release with a full RGB keyboard. For the last few years, we’ve been tracking the progress of gaming on Chromebooks. They’re already surprisingly capable machines thanks to game streaming services like Google Stadia…
Read More
Twitter pauses ads in Ukraine and Russia amid growing conflict thumbnail

Twitter pauses ads in Ukraine and Russia amid growing conflict

Twitter is putting a temporary hold on advertisements in Ukraine and Russia to ensure the visibility of public safety information. We’re temporarily pausing advertisements in Ukraine and Russia to ensure critical public safety information is elevated and ads don’t detract from it.— Twitter Safety (@TwitterSafety) February 25, 2022 “We’re temporarily pausing advertisements in Ukraine and…
Read More
IdeaPad 5G – Arm/Windows лаптоп с 5G модем thumbnail

IdeaPad 5G – Arm/Windows лаптоп с 5G модем

14-инчовият екран на IdeaPad 5G има резолюция Full HD и яркост 300 нита(снимка: Lenovo) Лаптоп с 5G модем е новото предложение на Lenovo на българския пазар. Моделът IdeaPad 5G обещава по-бърза алтернатива на Wi-Fi у дома чрез връзка към клетъчната 5G мрежа. IdeaPad 5G е Arm-базиран лаптоп. Моделът разчита на чипсет Qualcomm Snapdragon 8cx 5G…
Read More
Index Of News
Total
0
Share