MS Defender ATP Overview and Full Attack Simulation

Поділитися
Вставка
  • Опубліковано 18 гру 2024

КОМЕНТАРІ • 58

  • @anilkudidi9162
    @anilkudidi9162 4 роки тому +2

    Thanks for putting this together , a comprehensive video to learn about how MS Defender ATP works.

    • @ammarhasayen
      @ammarhasayen  4 роки тому

      Anil Kudidi thanks for ur feedback buddy

  • @wsccomm
    @wsccomm 4 роки тому +1

    This was great full for overview & for how MS Defender ATP works

  • @spookie1979
    @spookie1979 4 роки тому +1

    Hi! I was searching a while to find a detailed overview about ATP to get started! Your video is great! It gave me all the insight. thanks a lot for sharing that.

  • @zekozak89
    @zekozak89 4 роки тому +1

    the video is more than amazing. Many thanks for your efforts man.
    Cheers
    Zakaria - Microsoft Security TSP

  • @kennethboadu9227
    @kennethboadu9227 4 роки тому

    An amazing overview of MS Defender ATP. Thank you so much.

  • @ashwin20073178
    @ashwin20073178 4 роки тому +1

    Nice video....Excellent flow. I'm already searching for more videos of yours in the same domain. Thank you Sir!

  • @rahul4024
    @rahul4024 4 роки тому +1

    Watching this before an interview.

  • @israeltakaw112
    @israeltakaw112 3 роки тому +1

    Thank you for providing a comprehensive explanation of how this fantastic tool works! I wish you could have gone over which licenses to pair with in order to get Microsoft Windows Defender ATP.

  • @asesorestic
    @asesorestic 2 роки тому +1

    Very well explained !

  • @danielshone5388
    @danielshone5388 4 роки тому +1

    Superb - really great video - best one i've watched - thankyou!

  • @richie5135
    @richie5135 5 років тому +2

    Very well done

  • @coltonmanwill951
    @coltonmanwill951 5 років тому +5

    This was great! I would love to see a demo that includes use of the evidence tab. If anyone has a source with this please point me in the right direction.

  • @lexiewong85
    @lexiewong85 5 років тому +1

    Great video, thanks for putting this together!

    • @ammarhasayen
      @ammarhasayen  5 років тому

      It took a lot of time preparing for it, and I am glad you liked it

  • @ajeetkeshari9509
    @ajeetkeshari9509 4 роки тому +1

    This is Awesome ! very well explained.

  • @jwalzer
    @jwalzer 5 років тому +1

    Thx for such a comprehensive review - great video!

  • @stevetanti6232
    @stevetanti6232 5 років тому +1

    Excellent video. Thanks!

    • @ammarhasayen
      @ammarhasayen  5 років тому

      Thanks for your feedback Steve !

  • @camdlux
    @camdlux 5 років тому +1

    Excellent job!

  • @IntuneVitaDoctrina
    @IntuneVitaDoctrina 4 роки тому +1

    Great Video! thanks a lot for sharing this

  • @ramisohail
    @ramisohail 5 років тому

    awesome informative video Ammar, keep them going

    • @ramisohail
      @ramisohail 5 років тому

      i would recommend exploring the idea of making smaller videos with same content for each part instead of one complete 45 minutes video, just a suggestion , rock on!

  • @CSCollections
    @CSCollections 5 років тому +1

    Does MS provide any dedicated antivirus solution for NAS(Network-attached storage) like Mcafee VSES ?

    • @ammarhasayen
      @ammarhasayen  5 років тому +1

      CS Collections hmmm they only have Defener and defenr ATP

    • @CSCollections
      @CSCollections 5 років тому

      @@ammarhasayen
      Thanks for the reply.

  • @RahulSingh-ut2tj
    @RahulSingh-ut2tj 4 роки тому

    Please could you do a plural sight course on MS-500?

  • @pankajksharma4017
    @pankajksharma4017 4 роки тому

    Awesome explanation bro
    Could you please explain architecture level and what are the deployment scenarios to implement Defender ATP

  • @infosecnik2517
    @infosecnik2517 4 роки тому

    that's leet !! awsome work

  • @FlagnarBoobz
    @FlagnarBoobz 4 роки тому

    Where is the remediation side of things? If you look at endpoint protection software such as SentinelOne, they have the ability to automate remediation and rollbacks to an older version of windows using shadow copies. I.e if Ransomware hits, you can just rollback. What does Microsoft ATP have in this sense?

    • @ammarhasayen
      @ammarhasayen  4 роки тому

      FlagnarBoobz taking action here includes isolating machine, rest3app execution, run malware scane,... Beside many other things that comes up recently

    • @FlagnarBoobz
      @FlagnarBoobz 4 роки тому

      @@ammarhasayen definitely not as granular as sentinel one and will require a rebuild of the machine if Ransomware hits

  • @iMentorCloud
    @iMentorCloud 5 років тому +2

    very informative 5/5 :)

  • @zongri100
    @zongri100 5 років тому +1

    Hi Ammar, how to simulate the real attacks, how you did to showcase a demo to my customers..pls advise

    • @ammarhasayen
      @ammarhasayen  5 років тому +1

      In the Microsoft Defender ATP portal there is question mark icon, click it and then simulations and tutorials. Enjoy:)

    • @zongri100
      @zongri100 5 років тому +1

      @@ammarhasayen Thank you Ammar!

  • @patomigu
    @patomigu 5 років тому +1

    Any idea of the pricing on Windows OS that is not Win 10 E3 or E5?

    • @ammarhasayen
      @ammarhasayen  5 років тому +1

      Sunday McDickson Samuel so you mean the windows pro. You can buy it from different channels and each channel offer different support buddy. Of course when you buy a machine it comes with free OEM version.

  • @jstump1972
    @jstump1972 4 роки тому

    what if a company uses a software from knowbe4.com to test their employees using usb drives and the word doc the users opens wants to run this macro and ATP stops it? We want it to run for the specific campaign files. How do we tell ATP to log and display the events but allow the user to enable the macro so the details are recorded.

    • @ammarhasayen
      @ammarhasayen  4 роки тому

      Jeremy you can whitelist it in ATP

    • @jstump1972
      @jstump1972 4 роки тому

      @@ammarhasayen sure love to know where

    • @ammarhasayen
      @ammarhasayen  4 роки тому

      Jeremy S docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-antivirus/configure-exclusions-windows-defender-antivirus

    • @jstump1972
      @jstump1972 4 роки тому

      @@ammarhasayen the issue is since it is files from a usb drive that could be D drive, E, F, G so we would need to create the exception for example d:\testfile.doc, e:\testfile.doc, f:\testfile.doc, g:\testfile.doc, would be nice if we could just add document named *\testfile.doc and it exclude from all drives from being caught. We need this for testing our employees

  • @jessemichaelbarron9283
    @jessemichaelbarron9283 4 роки тому

    great

  • @sathyasekar2938
    @sathyasekar2938 4 роки тому

    Can you use Windows Defender ATP with another antivirus?