User Profile
C00kieMonster
Brass Contributor
Joined 3 years ago
User Widgets
Recent Discussions
Re: CVE-2024-26192 Edge 122.0.2365.52
Thank you so much for the quick reply, Kelly_Y - so does this mean that version 122.0.2365.52 is already patched to protect against CVE-2024-26192, and there's nothing additional we need to do outside of continuing to deploy this version throughout our environment? 😮1.3KViews0likes2CommentsCVE-2024-26192 Edge 122.0.2365.52
Is there a patch or newer version of Edge available that we could deploy to close the gap on systems running this vulnerable version of Edge (122.0.2365.52)? https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-26192Solved1.8KViews0likes4CommentsRe: Faulting application name: SenseNdr.exe
We're also seeing an exponential increase in SenseNdr.exe faults (specifically version 2.3.1.0) that started in early September, but has exponential increased just this month. I'm talking from a few hundred per day throughout September to now over 5,000 per day in October.17KViews0likes2CommentsRe: Process exclusions not working for MSSense.exe
How are you setting your process exclusions? I know in our case (using group policy) it turned out it was very picky about how we had the exclusions written. You set the name to the full path to the executable you want to exclude, and then you set the data to "0". (we had no luck just using the executable by itself) So when all is said and done, what populates into registry are REG_SZ keys where the name is the full path, and the data value shows 0. Been working for us for many months now.3.4KViews1like1CommentRe: Enabling Web Filtering for Test group
One thing I will caution in regards to web content filtering (WCF) via MDE: If your organization's internet traffic funnels through a forwarding proxy - you'll probably want to keep an eye on just how much this feature slams your proxy. We found out the hard way just today that even having it set to audit, we're seeing about a 330% increase in traffic out to the WCF URL hitting our proxy. So, what may be ~5 million calls per day to the smart screen URL without WCF suddenly becomes ~17 million calls per day with WCF turned on.599Views0likes0CommentsMDE Security Configuration Management - GCC
When will the https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/gov?view=o365-worldwide#feature-parity-with-commercial be available in GCC tenants? Also, is there any possible way to request early access?568Views0likes0CommentsDefender Linux Workstation Support
Does anyone happen to know when Defender for Endpoint will be officially supported on Linux workstation distributions? We have a lot of RHEL 8 and 9 workstations (not just servers), but the Microsoft documentation indicates only Linux for server distros are supported. https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/microsoft-defender-endpoint-linux?view=o365-worldwide#system-requirements1.1KViews1like2Comments
Recent Blog Articles
No content to show