6.3 Dealing with Ransomware via Sentinel automation, MDE from Zero to Hero

Поділитися
Вставка
  • Опубліковано 7 лис 2024

КОМЕНТАРІ • 4

  • @sameershetty1527
    @sameershetty1527 Рік тому

    What if I dont want to fully isolate the endpoint I want users to have the option to communicate via teams & outlook but rest everything blocked
    As this option is available when we do manual isolation from defender portal
    Which action should we select for trigger isolation in logic apps

  • @osho0001
    @osho0001 Рік тому

    Please clarify why we required sentinel to isolate, if there is any malware found defender has capability to identify and isolate the device right

  • @vipuldabhi6971
    @vipuldabhi6971 Рік тому +2

    How to get this wannacry files from??

    • @jacksonfeldencloudsecurity
      @jacksonfeldencloudsecurity  Рік тому

      You can find it by searching for "the Zoo - A Live Malware Repository" on GitHub.
      Please BE CAREFUL, they are real malware and ransomware.