Defender for Endpoint Tests Auto-Isolation to Stop Lateral Movement

1 min read
Source: BleepingComputer
Defender for Endpoint Tests Auto-Isolation to Stop Lateral Movement
Photo: BleepingComputer
TL;DR Summary

Microsoft Defender for Endpoint is previewing automatic isolation as part of Automatic Attack Disruption, automatically isolating suspected-compromised onboarded endpoints to limit attacker lateral movement and data exfiltration while keeping the device monitored; security operators can release the device after investigation, with the feature expanding prior isolation capabilities across Windows and Linux devices and user accounts.

Share this article

Reading Insights

Total Reads

0

Unique Readers

3

Time Saved

3 min

vs 4 min read

Condensed

92%

71055 words

Want the full story? Read the original article

Read on BleepingComputer