News Feed
🇬🇧 UK Focus 📅 Loading…
Defender for Endpoint defender 08 Jun 2026
Microsoft Defender now monitors RPC activity

Remote procedure call (RPC) is a protocol commonly abused by attackers that allows functions implemented in a separate process, and potentially on a remote machine, to be called as if they were local. Many core Windows and Active Directory capabilities are built on or make use of RPC, which makes it…

Defender for Endpoint defender 27 Apr 2026
Assess Secure Boot status with Microsoft Defender

Understanding the Secure Boot certificate challenge Secure Boot is a foundational security feature that validates the integrity of your device's boot process, ensuring only trusted software can run during system startup. This protection has been quietly defending enterprise devices since 2012, but t…

Defender for Endpoint defender 03 Mar 2026
Transparent and customizable onboarding for modern and legacy Windows devices

Onboarding all devices in your estate is paramount for strong security posture. In fact, Microsoft Threat Intelligence research shows that in the majority of ransomware attacks, the spreader machine was a device that was not yet onboarded. But customers often struggle to follow complex steps that di…

Defender for Endpoint defender 17 Feb 2026
Introducing library management in Microsoft Defender

In dynamic investigation environments, preparation and agility are key. Security analysts working with live response in Microsoft Defender often rely on scripts and tools to triage, investigate, and remediate threats. Until now, these assets had to be uploaded during active sessions, limiting manage…