Tagged: MDE

Defender for Endpoint on Ubuntu

This paper describes how to manually deploy Microsoft Defender for Endpoint on Ubuntu 20.04 with a few tips, experience from the field, and much more.

Microsoft expands its Microsoft Defender for Endpoint ecosystem to match the commitment to operating systems … Read the rest

Device Control with MDE and INTUNE - Mass Storage Blocking

Device Control with MDE and INTUNE

I came across countless requests for device control and blocking mass storage devices in various forms. The most common is the external blocking storage and monitor access—this time something short and less in the world of incident response or Microsoft … Read the rest

Att^ck & D3fend: MDE LAB Series

Att^ck & D3fend: MDE LAB Series – C0d3 eX3CuT!oN

Managing comprehensive security products and security controls can be complicated, requiring a specific skill set and controlling all over the security process. In addition to managing complexity is tracking where the simulation activities, alerts, and results are reflected during the … Read the rest

Att^ck & D3fend: MDE LA8 – Initial Acce§s

Roses are red, Violets are blue, and if initial access has been successfully done, your network is probably gone.

Managing a comprehensive security product and control can be complicated, requiring a cumbersome environment and device configuration before an end-to-end attack … Read the rest