Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[FR] Develop Responder for Microsoft Defender for Endpoint #908

Closed
korteke opened this issue Nov 23, 2020 · 0 comments · Fixed by #909
Closed

[FR] Develop Responder for Microsoft Defender for Endpoint #908

korteke opened this issue Nov 23, 2020 · 0 comments · Fixed by #909
Assignees
Milestone

Comments

@korteke
Copy link
Contributor

korteke commented Nov 23, 2020

Feature description
I've started develop responder for MS defender for endpoints (formerly known as Microsoft ATP) that will:

  • Isolate victims machine by ip-address --> machineId
  • Push IoC's to ATP client
  • Run antivirus scan

Describe the solution you'd like
Responder is going to utilize Microsoft ATP API's

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging a pull request may close this issue.

2 participants