Microsoft: Here’s how our technology disrupts ransomware and phishing attacks

developers-looking-at-a-monitor-in-an-office
Image: Getty/Luis Alvarez

Microsoft is expanding its cybersecurity suite, Microsoft 365 Defenderwith AI-based capabilities that can automatically detect and disrupt cyberattacks such as ransomware attacks and business email compromise (BEC) campaigns by quickly identifying and switching off the accounts or services being exploited by attackers.

In Depth:These experts are racing to protect AI from hackers. Time is running out

Successfully compromising and exploiting the right accounts can allow cyber criminals to gain access to the tools and privileges they need to encrypt a whole network of machines with ransomware in a short amount of time.

Meanwhile, BEC attacks— email attacks where employees are tricked into making financial transfers under false pretexts — can also occur in a short amount of time.

Both ransomware and BEC attacks can be very costly for victims. To help protect networks from cyberattacks, Microsoft is expanding the automatic attack disruption in Microsoft 365 Defenderwhich is powered by artificial intelligence-driven threat hunting and detection capabilities, which were first unveiled last year.

Also:The best VPN services

This capability uses high-confidence extended detection and response (XDR) signals across endpoints, identities, email, and software-as-a-service apps, to contain cybersecurity attacks quickly and effectively, to stop attacks, and limit the impact to the victim.

Microsoft is expanding its public preview of Microsoft 365 Defender, to help protect networks against ransomware and BEC attacks, two of the most common — and most costly — cybersecurity threats to businesses.

To prevent BEC attacks, automatic attack disruption detects attacks and removes the attacker’s access to the environment by switching off the compromised account, therefore limiting their ability to send fraudulent emails, preventing money transfers and financial losses.

And to prevent ransomware attacks, the technology isolates suspicious activity from a compromised device to prevent an attacker from using it to gain access to other machines and services that can be abused to spread the malicious payload.

Also:The ransomware problem isn’t going away, and these grim figures prove it

To ensure that the system isn’t actively quarantining false positives — and hindering legitimate users — Microsoft 365 Defender is trained with endpoint detection and response signals, along with insights from the continuous investigation of thousands of incidents by Microsoft’s research teams.

Action will only be taken if the activity has been properly examined by the AI powering the tool and, if it’s concluded that the activity is malicious, the automatic response actions are triggered against entities identified as compromised — preventing further attacks.

“This game-changing capability comes built-in with Microsoft 365 Defender and limits a threat actor’s progress early on — reducing the overall impact of an attack, from associated costs to loss of productivity,” said Eyal Haik, senior product manager at Microsoft.

Security

Note: This article have been indexed to our site. We do not claim legitimacy, ownership or copyright of any of the content above. To see the article at original source Click Here

Related Posts
เคบี เจ แคปปิตอล ฉลองครบ 1 ปี ตั้งเป้าขึ้นท็อปเทน Non Bank ไทย thumbnail

เคบี เจ แคปปิตอล ฉลองครบ 1 ปี ตั้งเป้าขึ้นท็อปเทน Non Bank ไทย

เคบี เจ แคปปิตอล ฉลองครบ 1 ปี ฉลุยตลาดไทย กวาดยอดโต 2 เท่าปีแรกประกาศเดินเกมรุกตลาดสินเชื่อ ชูใช้ระบบดิจิทัลเกาหลีดันยอดเพิ่ม 2 เท่าปี 65 ตั้งเป้าขึ้นท็อปเทน Non Bank ไทยบริษัท เคบี เจ แคปปิตอล จำกัด (KB J Capital Co.,Ltd.) แบรนด์ยักษ์ใหญ่เกาหลีใต้ ฉลองการดำเนินงานครบรอบ 1 ปี ในประเทศไทยสำเร็จในปีแรก ปล่อยสินเชื่อเพิ่มจากเดิมถึงสองเท่าจากการนำระบบ HQ Global Capital ของเกาหลีมาใช้ พร้อมเปิดศักราชใหม่ปี 2565 รุกออกบัตรเงินสดเจาะลูกค้าใหม่ อนุมัติได้ทันที ดอกเบี้ย 0% ในเดือนแรก หวังเพิ่มสินเชื่อใหม่อีกสองเท่า และตั้งเป้าขึ้นสู่ท็อปเทน Non Bank ไทยใน 5 ปี ซีอีโอระบุไทยเป็นตลาด Non Bank ที่ใหญ่ที่สุดในอาเซียนนายวอนซอค จ็อง ประธานเจ้าหน้าที่บริหาร บริษัทเคบี…
Read More
Show HN: Ellipsis – Automated PR reviews and bug fixes thumbnail

Show HN: Ellipsis – Automated PR reviews and bug fixes

Trusted by 1,400+ Github USERSEllipsis is an AI developer tool that automatically reviews code and fixes bugs on pull requests.Ellipsis is an AI teammate capable of answering questions, creating release notes, feature development, and fixing build issues.Ellipsis doesn't persist your source code anywhere. Period. It only lives on our servers in a private AWS VPC
Read More
Hitman Trilogy will be available in PC Game Pass and Xbox Game Pass in a few days.  Hitman III will get Ray Tracing and Intel XeSS thumbnail

Hitman Trilogy will be available in PC Game Pass and Xbox Game Pass in a few days. Hitman III will get Ray Tracing and Intel XeSS

Blisko rok temu zadebiutowała gra Hitman III, ostatnia część nowej trylogii z przygodami Agenta 47 od studia IO Interactive. Jak z pewnością pamiętacie, Hitman III od początku był tytułem z czasową ekskluzywnością dla platformy Epic Games Store (gra nie oferowała ponadto polskiego języka, tak z ciekawości). Twórcy ze wspomnianego studia zaprezentowali kilka nowości, które pojawią…
Read More
Elon Musk will also connect the Czech Republic to its internet.  But you will pay extra for his ambitious vision thumbnail

Elon Musk will also connect the Czech Republic to its internet. But you will pay extra for his ambitious vision

Elon Musk, šéf Tesly a SpaceXFoto: NASA/Kim Shiflett Jedním z cílů americké vesmírné společnosti SpaceX, za kterou stojí vizionář a nejbohatší člověk planety Elon Musk, je také zajistit internetové připojení i těm nejzapadlejším oblastem. Toho chce dosáhnout skrze své satelity, které na oběžnou dráhu v rámci projektu Starlink postupně vysílá. A nyní se k nim…
Read More
Amazon’s Astro robot: A feat of science or a successful product? thumbnail

Amazon’s Astro robot: A feat of science or a successful product?

October 3, 2021 10:20 AM The Transform Technology Summits start October 13th with Low-Code/No Code: Enabling Enterprise Agility. Register now! Why would you need a robot with a ten-inch screen, camera, sensors, and a bunch of other gadgets to go around your home and make Wall-E noises? Because Amazon thinks it might be useful in…
Read More
Index Of News
Total
0
Share