New tricks will help Microsoft Defender for Endpoint stop malware in its tracks

>

One thing most malware needs to do is contact the command & control (C2) server for further instructions. By capturing this traffic before information can be exchanged, Microsoft hopes to stop many attacks.

The company recently added a new feature to its Microsoft Defender for Endpoint (MDE) security platform that alerts administrators when a malicious connection is established. It is able to break that connection and log the details for further evaluation.