EDR explained - my FAVOURITE technical security control

  Рет қаралды 624

Steve Townsley

Steve Townsley

Күн бұрын

I'm not afraid to admit it, but I LOVE EDR. I've been working in information security for over a decade, and I've consistently seen attackers target endpoints. It's where users hang out, and therefore they're a treasure trove of sensitive data such as credentials, personal data, post-MFA access tokens etc.
Also, they almost always have internet access, and because users are browsing the web and opening emails on them, they give attackers great opportunities to gain access to them.
In this video I talk through what EDR is, the history of EDR, how it works, pros/cons, and the future.
You may have heard of EDR through other names, such as CrowdStrike, Windows Defender, or SentinelOne (other vendors are available!)
Below are the links I mention in the video.
Pyramid of pain: / pyramid-pain-timeless-...
My EDR article from LinkedIn: / endpoint-detection-res...
Irish health service ransomware article: / how-irish-health-servi...
British library ransomware article: / british-library-ransom...
Office of Personnel Management (OPM) article: / opm-breach-very-bad-da...
Office of Personnel Management (OPM) video: • The biggest data breac...
00:00 Introduction.
00:32 The history of EDR.
01:56 How EDR works.
02:57 EDR components.
03:38 Pros of EDR.
05:40 Costs and considerations.
06:56 Real-world examples where EDR would have helped.
08:01 The future of EDR.
09:29 Outro.
#cybersecurity #informationsecurity #ransomware

Пікірлер: 9
@theGaryRuddell
@theGaryRuddell Ай бұрын
Great overview of EDR! Nicely done Steve 🎉
@Steve_Townsley
@Steve_Townsley Ай бұрын
Thanks man! Yeah EDR is THE BEST.
@nameless_9504
@nameless_9504 Ай бұрын
I have both Ransome manuals Part I and II by Bassterlord. As you mentioned, the attacker primarily targets exposed VMS, focusing on ESXi zero-days and zerologon vulnerabilities. However, the exploits in Part II have become more complex and less clear. Many organizations, unfortunately, only take security seriously after they've been hacked. While EDR is excellent, not all organizations are willing to implement it.
@savagesurf2768
@savagesurf2768 Ай бұрын
I am an aspiring SOC analyst, and I love the way you explain concepts and tools in your videos that make it easily digestible for those without 10+ years in the field. Thanks!
@Steve_Townsley
@Steve_Townsley 29 күн бұрын
Thanks for taking the time to leave a comment! I really appreciate it 🙂
@markjw937
@markjw937 24 күн бұрын
Great video Steve
@Steve_Townsley
@Steve_Townsley 24 күн бұрын
Thanks very much for saying so! KZfaq can feel a bit like talking to an empty room so it’s lovely to hear feedback 🙂
@figo007tv
@figo007tv Ай бұрын
Thanks. I must explore EDR usage now that I've obtained CompTIA Security+ certification. I'm a bit lost on where I should start with it.
@Steve_Townsley
@Steve_Townsley Ай бұрын
I highly recommend it, and also congrats on passing Sec+!
Antivirus vs EPP vs EDR vs XDR
19:50
Relative Security
Рет қаралды 13 М.
XDR vs SIEM vs SOAR: What’s the Difference?
5:11
Heimdal®
Рет қаралды 7 М.
Increíble final 😱
00:37
Juan De Dios Pantoja 2
Рет қаралды 87 МЛН
Which one of them is cooler?😎 @potapova_blog
00:45
Filaretiki
Рет қаралды 10 МЛН
Final muy inesperado 🥹
00:48
Juan De Dios Pantoja
Рет қаралды 16 МЛН
1 Year Later...Did DeleteMe Really Erase my Online Data?
9:12
All Things Secured
Рет қаралды 116 М.
Windows Defender vs Ransomware 2024
7:17
The PC Security Channel
Рет қаралды 72 М.
EDR, MDR & XDR Explained
10:33
Pro Tech Show
Рет қаралды 28 М.
SOC 101: Real-time Incident Response Walkthrough
12:30
Exabeam
Рет қаралды 191 М.
XDR (Extended Detection & Response) Explained
6:18
IBM Technology
Рет қаралды 44 М.
Cybersecurity in the age of AI | Adi Irani | TEDxDESC Youth
7:59
How to become a Cyber Threat Intel analyst
2:32
Gary Ruddell
Рет қаралды 4,9 М.
How To Manage Security Risks & Threats | Google Cybersecurity Certificate
1:27:48
Google Career Certificates
Рет қаралды 202 М.
Как работает автопилот на Lixiang L9 Max
0:34
Семен Ефимов
Рет қаралды 16 М.
i love you subscriber ♥️ #iphone #iphonefold #shortvideo
0:14
Si pamerR
Рет қаралды 3,5 МЛН
Gizli Apple Watch Özelliği😱
0:14
Safak Novruz
Рет қаралды 2,3 МЛН
How To Unlock Your iphone With Your Voice
0:34
요루퐁 yorupong
Рет қаралды 24 МЛН
WWDC 2024 - June 10 | Apple
1:43:37
Apple
Рет қаралды 10 МЛН
AI от Apple - ОБЪЯСНЯЕМ
24:19
Droider
Рет қаралды 126 М.