From the course: Microsoft Security Copilot

Unlock this course with a free trial

Join today to access over 24,800 courses taught by industry experts.

Analyze suspicious code with Microsoft Security Copilot

Analyze suspicious code with Microsoft Security Copilot - Microsoft Security Copilot Tutorial

From the course: Microsoft Security Copilot

Analyze suspicious code with Microsoft Security Copilot

- [Instructor] Security analysts need to deal with all kinds of suspicious codes. Let's see how Microsoft Security Copilot can help with that. Suspicious code analysis includes some common tasks, such as explain what the code does, investigate its security impact and related vulnerabilities, recommend actions to defend against the malicious code, write a code analysis report and share your findings with your team members. It's impossible for Security Analysts to know every programming language and system command. Also, examining a complex script with hundreds of lines takes a long time. This is why we need a Microsoft Security Copilot to work with us together. Now let's do a quick demo. Here's a sample incident in my Microsoft Defender XDR portal. Under attack story, click Suspicious PowerShell download or encoded command execution. I found a suspicious PowerShell script. Under the command line, I see a very long script and a part of it seems to be encoded by Base 64. Fortunately, we…

Contents