Microsoft Defender Experts for XDR recognized in the latest MITRE Engenuity ATT&CK® Evaluation for Managed Services
ID: 12194b94-2a54-5294-a326-e44c975b19e6
STIX ID: report--12194b94-2a54-5294-a326-e44c975b19e6
Feed Name: Microsoft Security
Microsoft describes Defender Experts for XDR’s detection and response during a MITRE Engenuity managed-services evaluation, detailing two incidents: a Purple Typhoon intrusion that used RDP and DLL Search Order Hijacking to deploy a Quasar RAT for keylogging and credential theft leading to lateral movement, and a BlackCat/ALPHV ransomware operation that used access broker credentials to exfiltrate data and perform double extortion; the report highlights detection, hunted incidents, provided IOCs and advanced hunting queries, and automated attack disruption and managed remediation capabilities.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
