From the course: Microsoft Security Copilot
Unlock this course with a free trial
Join today to access over 24,800 courses taught by industry experts.
Analyze suspicious code with Microsoft Security Copilot - Microsoft Security Copilot Tutorial
From the course: Microsoft Security Copilot
Analyze suspicious code with Microsoft Security Copilot
- [Instructor] Security analysts need to deal with all kinds of suspicious codes. Let's see how Microsoft Security Copilot can help with that. Suspicious code analysis includes some common tasks, such as explain what the code does, investigate its security impact and related vulnerabilities, recommend actions to defend against the malicious code, write a code analysis report and share your findings with your team members. It's impossible for Security Analysts to know every programming language and system command. Also, examining a complex script with hundreds of lines takes a long time. This is why we need a Microsoft Security Copilot to work with us together. Now let's do a quick demo. Here's a sample incident in my Microsoft Defender XDR portal. Under attack story, click Suspicious PowerShell download or encoded command execution. I found a suspicious PowerShell script. Under the command line, I see a very long script and a part of it seems to be encoded by Base 64. Fortunately, we…
Contents
-
-
-
-
Create effective prompts in Microsoft Security Copilot4m 29s
-
(Locked)
Using plugins in Microsoft Security Copilot3m 36s
-
(Locked)
Handle incidents with Microsoft Security Copilot4m 16s
-
(Locked)
Analyze vulnerabilities with Microsoft Security Copilot3m 3s
-
(Locked)
Analyze suspicious code with Microsoft Security Copilot3m 36s
-
(Locked)
Query uploaded files with Microsoft Security Copilot2m 24s
-
(Locked)
Using promptbooks in Microsoft Security Copilot3m 15s
-
-