Recent Blogs
Co-authors - Christoph Dreymann - Shiva P
Introduction
Azure Storage Accounts are frequently targeted by threat actors. Their goal is to exfiltrate sensitive data to an external infrastructure un...
Sep 02, 20252.5KViews
2likes
0Comments
Co-authors - Raae Wolfram | Sam Gardener
Once an attacker has gained access to a system, the browser becomes a rich source of credentials, a platform for persistence, and a stealthy channel for dat...
Aug 25, 2025537Views
0likes
0Comments
Updated August 11, 2025
Microsoft Defender Experts for XDR
Microsoft Defender Experts for XDR is a managed extended detection and response (MXDR) service that triages, investigates, and respo...
Aug 15, 2025528Views
1like
0Comments
Microsoft Defender Experts manages and investigates incidents for some of the world’s largest organizations. We understand the challenges facing our customers and are always looking for ways to respo...
Aug 14, 2025396Views
1like
0Comments
7 MIN READ
Forensic readiness in the cloud
Forensic readiness in the cloud refers to an organization’s ability to collect, preserve, and analyze digital evidence in preparation for security incidents.
Foren...
Aug 11, 20251.5KViews
4likes
1Comment
From memory dumps to filesystem browsing
Historically, threat groups like Lorenz have relied on tools such as Magnet RAM Capture to dump volatile memory for offline analysis. While this approach ca...
Aug 05, 2025723Views
2likes
0Comments
Co-authors: Henry Yan, Sr. Product Marketing Manager and Sylvie Liu, Principal Product Manager
Security Operations Centers (SOCs) are under extreme pressure due to a rapidly evolving threat lan...
Aug 04, 20252.6KViews
3likes
0Comments
5 MIN READ
Co-authors - Ateesh Rajak - Balaji Venkatesh
Overview:
What if an attacker didn’t need malware, phishing kits, or exploits to break into your environment—just a convincing voice and a tool you ...
Jul 18, 2025610Views
1like
0Comments
Co-authors - Christoph Dreymann - Abul Azed - Shiva P.
Introduction
As organizations increase their cloud adoption to accelerate AI readiness, Microsoft Incident Response has observed the ris...
Jul 14, 20251.9KViews
0likes
1Comment
During a cyberattack, speed and coordination can make all the difference. It's not just about technical expertise; it's about having the right people working together when every second matters. Succe...
Jun 16, 2025396Views
0likes
0Comments
Resources
Tags
- defender experts for xdr35 Topics
- defender experts for hunting28 Topics
- microsoft incident response (ir)21 Topics
- Industry Expert Series9 Topics