Microsoft 365 Defender is the only XDR platform that protects against ransomware attacks at the organizational and device levels – as well as Man-in-the-Middle & Email Compromise attacks.
Utilizing "automated attack disruption" to respond to adversary hands-on-keyboard activity at scale gives defenders a significant advantage in cost of attack vs defense. However this degree of automation can only be successfully utilized where sufficiently high confidence detections are available. Thanks to our advancements in #AI, we can bring those high confidence detections to bear automating defense for more scenarios and greater scope than ever before.
Microsoft Defender for Endpoint shifts the paradigm with Automatic Attack Disruption – from Detect-&-Alert to Detect-&-Disrupt. This AI-powered capability uses signal across the Microsoft 365 Defender workloads to disrupt advanced attacks with high confidence.
- BLOG: Microsoft Defender for Endpoint now stops human-operated attacks on its own
https://www.microsoft.com/en-us/security/blog/2023/10/11/microsoft-defender-for-endpoint-now-stops-human-operated-attacks-on-its-own/
