Top
image credit: Pexels

Microsoft Defender ATP now scans Windows 10 PC firmware for hardware rootkit attacks

June 19, 2020

Via: ZDnet

Microsoft has been building firmware-level defenses into Windows 10 Secured-Core PCs for the enterprise, and now it’s bringing similar capabilities to its enterprise antivirus software, Microsoft Defender Advanced Threat Protection (ATP).

Secured-core PCs include a handful of Windows 10 PCs, including the Surface Pro X, HP Elite Dragonfly, Dell Latitude 7400, and fourth-generation Lenovo ThinkPad X1 Yoga.

One of the key hardware-level protections these offer is kernel Direct Memory Access (DMA) protection, which can mitigate hands-on attacks that exploit, for example, the Thunderbolt interface to steal data from memory.

Read More on ZDnet