Microsoft

MicrosoftSecurity

Expanding audit logging and retention within Microsoft Purview for increased security visibility

Credit to Author: Rudra Mitra| Date: Wed, 18 Oct 2023 16:00:00 +0000

Since our announcement in July 2023, we have made significant efforts to enhance the access of Microsoft Purview’s audit logging. This ongoing work expands accessibility and flexibility to cloud security logs. Read about the additional updates coming to Microsoft Purview Audit in the coming weeks.

The post Expanding audit logging and retention within Microsoft Purview for increased security visibility appeared first on Microsoft Security Blog.

Read More
MicrosoftSecurity

Microsoft Defender for Endpoint now stops human-operated attacks on its own

Credit to Author: Rob Lefferts| Date: Wed, 11 Oct 2023 16:00:00 +0000

Today, we’re pleased to announce that Microsoft Defender for Endpoint customers will now be able automatically to disrupt human-operated attacks like ransomware early in the kill chain without needing to deploy any other capabilities. Now, organizations only need to onboard their devices to Defender for Endpoint to start realizing the benefits of attack disruption.

The post Microsoft Defender for Endpoint now stops human-operated attacks on its own appeared first on Microsoft Security Blog.

Read More
MicrosoftSecurity

Automatic disruption of human-operated attacks through containment of compromised user accounts

Credit to Author: Microsoft Threat Intelligence| Date: Wed, 11 Oct 2023 16:00:00 +0000

User containment is a unique and innovative defense mechanism that stops human-operated attacks in their tracks. We’ve added user containment to the automatic attack disruption capability in Microsoft Defender for Endpoint. User containment is automatically triggered by high-fidelity signals and limits attackers’ ability to move laterally within a network regardless of the compromised account’s Active Directory state or privilege level.

The post Automatic disruption of human-operated attacks through containment of compromised user accounts appeared first on Microsoft Security Blog.

Read More
MicrosoftSecurity

Defending new vectors: Threat actors attempt SQL Server to cloud lateral movement

Credit to Author: Microsoft Threat Intelligence| Date: Tue, 03 Oct 2023 16:30:00 +0000

Microsoft security researchers recently identified an attack where attackers attempted to move laterally to a cloud environment through a SQL Server instance. The attackers initially exploited a SQL injection vulnerability in an application within the target’s environment to gain access and elevated permissions to a Microsoft SQL Server instance deployed in an Azure Virtual Machine (VM). The attackers then used the acquired elevated permission to attempt to move laterally to additional cloud resources by abusing the server’s cloud identity.

The post Defending new vectors: Threat actors attempt SQL Server to cloud lateral movement appeared first on Microsoft Security Blog.

Read More
MicrosoftSecurity

Celebrate 20 years of Cybersecurity Awareness Month with Microsoft and let’s secure our world together

Credit to Author: Vasu Jakkal| Date: Mon, 02 Oct 2023 16:00:00 +0000

It’s Cybersecurity Awareness Month! Celebrate security with us and prioritize it year-round. Explore how Microsoft is continuously innovating and creating the #BeCybersmart kit to help you and your organization stay safe online.

The post Celebrate 20 years of Cybersecurity Awareness Month with Microsoft and let’s secure our world together appeared first on Microsoft Security Blog.

Read More
MicrosoftSecurity

New security features in Windows 11 protect users and empower IT

Credit to Author: David Weston| Date: Tue, 26 Sep 2023 17:00:00 +0000

Windows 11 is designed to simplify security with features from the chip to the cloud that are on by default. Since its launch, we’ve seen a 58 percent reduction in security. Learn more about the new features.

The post New security features in Windows 11 protect users and empower IT appeared first on Microsoft Security Blog.

Read More