Skip to main content

Microsoft upgrades Windows Defender to better combat new malware threats

Prevention is better than a cure, that’s how the old saying goes, and it is just as viable in terms of digital security as it is with our own personal health. That’s the mentality Microsoft has entrenched in its development of Windows 10, and it’s continuing to expand on that ethos with its new Advanced Threat Protection system (ATP).

Windows Defender is built into Windows 10 as a core feature, and already offers basic threat detection for all those running the operating system. But on the request of many of its customers, Microsoft is leveraging machine learning to detect threats faster than ever before.

Recommended Videos

The first step of combating and threat is registering that an attack has taken place. This can take up to 200 days with traditional techniques in some enterprises, according to Microsoft research, so its new system hopes to do it much faster. Looking back at the last six months of system logs and activities, ATP can detect when non-typical activity takes place, allowing for manual follow ups to confirm the breach.

Please enable Javascript to view this content

There’s even simplified investigation tools that circumvent the need to look through raw log files, and the ability to send files and URLs to isolated virtual machines for deeper examination. This will help responders to correctly formulate a plan to deal with the breach and figure out a method to close up the flaw in security that allowed it to take place.

The big reason Microsoft is excited for ATP, though, is that it sits alongside Windows Defender and other anti-virus and anti-malware tools without intrusion. Since it operates in a different manner, it can augment existing security, and due to its regular updates through the Windows 10 Insider program, it will be kept at the forefront of detection and malware combat.

This means there’s zero deployment cost or effort on the enterprise end, which many businesses will appreciate.

Already deployed in more than 500,000 test cases, Microsoft hopes that this added feature will encourage other businesses and individuals to switch over to Windows 10 now, with a look to enjoy the benefits of ATP in the near future.

Jon Martindale
Jon Martindale is a freelance evergreen writer and occasional section coordinator, covering how to guides, best-of lists, and…
Launching Windows 11 apps could get up to 50% faster thanks to this new tech
Microsoft Store Ads on a Dell XPS Laptop.

Windows Latest has spotted a recent support document post from Microsoft confirming native Ahead of Time (AOT) support has been added to the Windows App SDK. According to Microsoft, this could bring major improvements to the launch times of Windows 11 apps. In its own testing, Microsoft has measured a 50% reduction in start times and around an 8x reduction in package size.

The Windows App SDK exists to help developers use classic desktop app frameworks to make apps with access to modern APIs that can be used across all kinds of Windows devices.

Read more
There’s a scary new way to undo Windows security patches
Windows 11 logo on a laptop.

Security patches for Windows are essential for keeping your PC safe from developing threats. But downgrade attacks are a way of sidestepping Microsoft's patches, and a security researcher set out to show just how fatal these can be.

SafeBreach security researcher Alon Leviev mentioned in a company blog post that they'd created something called the Windows Downdate tool as a proof-of concept. The tool crafts persistent and irreversible downgrades on Windows Server systems and Windows 10 and 11 components.

Read more
Microsoft cracks down on Windows 11 upgrade requirements
A photo of the Sensel Click Composer Software running on Windows 11

With just a little more than a year left before Windows 10 hits its end-of-life, Microsoft has been busy encouraging people to upgrade to Windows 11. One of the hurdles with getting PCs upgraded to Windows 11, though, are the hardware requirements -- and now they're cracked down on harder.

A recent beta build of Windows 11 has patched the well-used "setup.exe /product server" workaround that allowed you to completely bypass the system requirements check and run Windows 11 on a non-compliant machine -- in other words, a machine without TPM 2.0.

Read more