Forum Discussion

4 Replies

  • Joe Stern's avatar
    Joe Stern
    Iron Contributor

    What is a good way to test this flow? The downloads from https://demo.wd.microsoft.com all generate Informational severity alerts. 

    • Dan Michelson's avatar
      Dan Michelson
      Icon for Microsoft rankMicrosoft

      Joe Stern 

       

      Have you tried our "Simulations and Tutorials"?

      On the upper right side of the MDATP portal you'll find the "?" menu. There you may pick the Simulations menu item and try different scenarios. Most of the attack scenarios will create the alerts you're looking for.

       

      Please share your feedback.

      • Joe Stern's avatar
        Joe Stern
        Iron Contributor
        Thanks, Dan. The fileless PowerShell scenario on that page triggered my flow successfully; I'm hoping never to see a real one but I will ready when it comes.

Resources