Microsoft Entra Suite Tech Accelerator
Aug 14 2024, 07:00 AM - 09:30 AM (PDT)
Microsoft Tech Community

Resources for Automatic attack disruption

Microsoft

Hi all,

 

because this topic is really HOT, I thought I am sharing a collection of resources with you. 

 

Recordings:

Blogs:

Documentation:

What do you think about this new and exciting capability? Do you have any questions on how it works that we didn't refer to? If so feel free to start a conversation here! :) Oh and if I missed another resource, let me know too!

Heike

1 Reply

I for one am really excited by this new feature @Heike Ritter! It really sets the XDR bar at a new level, where the "R" in "DR" moves from tools for manual SOC response actions to the system taking proactive automatic response actions to block attacker progress and contain the threat! 

We're already hearing from customers how significant badness was prevented in their environment by disruption kicking in quickly and accurately to stop and evolving attack.   

 

What do other folks here think about this new capability? Have you seen it in action in your environment? Thoughts on where/how it should evolve? Let us know!