fbpx
Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Penetration Testing

          Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

Microsoft Previews Linux Endpoint Detection And Response Capabilities

Microsoft Previews Linux Endpoint Detection And Response Capabilities

Microsoft has announced today the public preview of endpoint detection and response (EDR) capabilities on Linux servers running Microsoft Defender Advanced Threat Protection (ATP) — now known as Microsoft Defender for Endpoint.

The addition of EDR capabilities provides security analysts with the ability to spot attacks involving Linux servers in their environments almost in real-time via alerts automatically aggregated as incidents based on attacker attribution and techniques.

“This builds on the existing preventative antivirus capabilities and centralized reporting available via the Microsoft Defender Security Center,” Microsoft Senior Product Manager Tomer Hevlin said.

Microsoft Defender for Endpoint’s Linux EDR capabilities provide admins with:
• Rich investigation experience: including machine timeline, process creation, file creation, network connections, login events and, of course, the popular advanced hunting.
• Optimized performance: enhanced CPU utilization in compilation procedures and large software deployments.
• In-context AV detections: just like with Windows, get insight into where a threat came from and how the malicious process or activity was created.

Also Read: Key PDPA Amendments 2019/2020 You Should Know

Support for Linux devices

Microsoft Defender for Endpoint was made generally available for enterprise customers with Linux devices earlier this year, in June.

On Linux endpoints, it comes in the form of a command-line product that will send all detected threats to the Microsoft Defender Security Center.

Admins with licenses for servers can deploy and configure it on Linux devices with the help of Ansible or Puppet, as well as with any existing Linux configuration management tool.

At the moment, EDR capabilities are available on Linux Server distributions supported by Microsoft Defender for Endpoint, including RHEL 7.2+, CentOS Linux 7.2+, Ubuntu 16 LTS or higher LTS, SLES 12+, Debian 9+, and Oracle Linux 7.2.

Microsoft Defender for Endpoint EDR for Linux
Microsoft Defender for Endpoint EDR for Linux (Microsoft)

Trying Linux EDR in public preview

To get started with Microsoft Defender for Endpoint’s public preview EDR capabilities, customers have to enable preview features in Microsoft Defender Security Center.

Those who are already running Microsoft Defender for Endpoint on Linux can go straight to configuring their Linux servers to Preview mode by running the following command on each machine:

$ sudo mdatp edr early-preview enable

Before getting started with Linux EDR preview, you will first have to make sure that the Linux servers you want to enable the new capabilities on are running Microsoft Defender for Endpoint version 101.12.99 or higher.

Also Read: The 5 Benefits Of Outsourcing Data Protection Officer Service

More info on how to quickly simulate attacks using EDR for Linux and about providing feedback can be found here.

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us