CISA launches Microsoft threat activity detection tool: 4 things to know

The Cybersecurity and Infrastructure Security Agency developed a free forensics collection tool to help defend Microsoft Windows networks against threats, according to a March 18 CISA notice.

Advertisement

CISA recommends any threat activity detected by the tool should be reviewed and confirmed. If an organization doesn’t have the capability to follow the guidelines in the alert, CISA recommends they consider hiring a third-party IT security support team for assistance.

Here are four things to know:

  1. The software is currently only compatible with Windows operating systems.
  2. The tool can locate malicious activity that has spilled onto an on-premises environment.
  3. The software can examine Windows event logs, registry and network for artifacts of suspicious activity.
  4. The tool does not run continuously, but needs to be routinely run for updated results.

To read the full notice, click here.

At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.

Register to Attend Webinar

The hidden cost of lost clinical time and how leading health systems are responding

Friday, August 7
12:00 PM - 1:00 PM CDT

Presenters: Kassaundra McKnight-Young, Zebra TechnologiesGregory Carras, Zebra TechnologiesJennifer Gene, Levata

Advertisement

Next Up in Cybersecurity

Advertisement

Comments are closed.