{"id":7697,"date":"2024-04-29T13:10:04","date_gmt":"2024-04-29T11:10:04","guid":{"rendered":"https:\/\/partnernews.sophos.com\/en-us\/?p=7697"},"modified":"2024-04-29T13:10:04","modified_gmt":"2024-04-29T11:10:04","slug":"sophos-endpoint-adaptive-attack-protection-gets-even-better","status":"publish","type":"post","link":"https:\/\/partnernews.sophos.com\/en-us\/2024\/04\/products\/sophos-endpoint-adaptive-attack-protection-gets-even-better\/","title":{"rendered":"Sophos Endpoint: Adaptive Attack Protection Gets Even Better"},"content":{"rendered":"<p><a href=\"https:\/\/news.sophos.com\/en-us\/2023\/09\/26\/context-sensitive-defenses-in-sophos-endpoint\/\">Adaptive Attack Protection<\/a> is a powerful and unique differentiator in <a href=\"https:\/\/www.sophos.com\/en-us\/products\/endpoint-antivirus\">Sophos Endpoint<\/a>. It dynamically enables heightened defenses when a \u201chands-on-keyboard\u201d attack is detected. In this elevated mode of protection, actions that are usually benign but commonly abused by attackers are blocked outright by Sophos Endpoint &#8211; dramatically reducing the likelihood of the attack&#8217;s success and giving you more time to neutralize the threat.<\/p>\n<p><a href=\"https:\/\/vimeo.com\/813614946\"><strong>Watch this 2-minute video<\/strong><\/a><strong> for an overview of Sophos Adaptive Attack Protection.<\/strong><strong><br \/>\n<\/strong><\/p>\n<p>As attackers continue to innovate in their approaches, we have extended this unique protection with additional capabilities that further protect Sophos Endpoint customers against active adversaries.<\/p>\n<p>&nbsp;<\/p>\n<h2>Greater Protection, More Control, Increased Visibility<\/h2>\n<p>This Sophos-exclusive protection capability is now even stronger. All Sophos Endpoint customers <strong>now benefit from <\/strong>a number of significant enhancements:<\/p>\n<ul>\n<li><strong>Greater protection. <\/strong>Customers now have the option to apply specific Adaptive Attack Protection blocking rules persistently via new policy settings in their Sophos Central cloud-based management console.<\/li>\n<li><strong>More control.<\/strong> Customers can now manually activate (and deactivate) Adaptive Attack Protection on a device to apply more aggressive protection while investigating suspicious activity &#8211; ideal for scenarios where fully isolating the device from the network may cause significant operational disruption to the organization. You can also extend the time that Adaptive Attack Protection is activated on a device to give more time to complete an investigation.<\/li>\n<li><strong>Increased visibility.<\/strong> New Adaptive Attack Protection events and alerts notify you when a device is under attack and urge responders to take action to neutralize the threat.<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<p><em>New manual controls for Adaptive Attack Protection.<\/em><\/p>\n<p><em> <img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-7698\" src=\"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2024\/04\/image001.png\" alt=\"\" width=\"640\" height=\"516\" srcset=\"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2024\/04\/image001.png 713w, https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2024\/04\/image001.png?resize=300,242 300w\" sizes=\"auto, (max-width: 640px) 100vw, 640px\" \/><\/em><\/p>\n<p><em>New alerts<\/em> <em>notify customers when Adaptive Attack Protection is activated on a device.<\/em><\/p>\n<p><strong> <img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-7699\" src=\"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2024\/04\/image003.png\" alt=\"\" width=\"640\" height=\"221\" srcset=\"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2024\/04\/image003.png 1380w, https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2024\/04\/image003.png?resize=300,104 300w, https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2024\/04\/image003.png?resize=768,265 768w, https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2024\/04\/image003.png?resize=1024,354 1024w\" sizes=\"auto, (max-width: 640px) 100vw, 640px\" \/><\/strong><\/p>\n<p>&nbsp;<\/p>\n<h2>New Safe Mode Protection<\/h2>\n<p>When adversaries fail to break through runtime protection layers on an endpoint, they often attempt to restart the device into Safe Mode, where security software is not present or minimal. Sophos Endpoint now protects against adversary abuse of Safe Mode with two new capabilities:<\/p>\n<ul>\n<li><strong>Block safe mode abuse:<\/strong> A new Adaptive Attack Protection persistent policy rule is now available that prevents adversaries from programmatically restarting devices into Safe Mode.<\/li>\n<li><strong>Enable protection in safe mode:<\/strong> Sophos Endpoint protection capabilities, including our unrivaled CryptoGuard anti-ransomware technology and AI-powered malware protection, can now be enabled on devices running in Safe Mode.<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<p><em>New safe mode protection policy settings.<\/em><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-7700\" src=\"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2024\/04\/image005.png\" alt=\"\" width=\"614\" height=\"275\" srcset=\"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2024\/04\/image005.png 614w, https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2024\/04\/image005.png?resize=300,134 300w\" sizes=\"auto, (max-width: 614px) 100vw, 614px\" \/><\/p>\n<p>Adaptive Attack Protection is available to all Sophos Endpoint customers today.<\/p>\n<p>For more information around Sophos Endpoint and a wealth of sales and marketing assets, please visit the\u202f<a href=\"https:\/\/partners.sophos.com\/prm\/English\/c\/selling-sophos-intercept-x\" target=\"_blank\" rel=\"noopener\">Selling Sophos Endpoint<\/a>\u00a0page\u202fon the Sophos Partner Portal.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Sophos continues to deliver the strongest endpoint protection in the industry.<\/p>\n","protected":false},"author":8,"featured_media":3000007706,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"advanced_seo_description":"","jetpack_seo_html_title":"","jetpack_seo_noindex":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[2],"tags":[274,142],"coauthors":[251],"class_list":["post-7697","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-products","tag-adaptive-attack-protection","tag-sophos-endpoint"],"jetpack_featured_media_url":"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2024\/04\/featured-image-adaptive-attack-prevention.png","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/partnernews.sophos.com\/en-us\/wp-json\/wp\/v2\/posts\/7697","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/partnernews.sophos.com\/en-us\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/partnernews.sophos.com\/en-us\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/en-us\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/en-us\/wp-json\/wp\/v2\/comments?post=7697"}],"version-history":[{"count":3,"href":"https:\/\/partnernews.sophos.com\/en-us\/wp-json\/wp\/v2\/posts\/7697\/revisions"}],"predecessor-version":[{"id":7703,"href":"https:\/\/partnernews.sophos.com\/en-us\/wp-json\/wp\/v2\/posts\/7697\/revisions\/7703"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/en-us\/wp-json\/"}],"wp:attachment":[{"href":"https:\/\/partnernews.sophos.com\/en-us\/wp-json\/wp\/v2\/media?parent=7697"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/en-us\/wp-json\/wp\/v2\/categories?post=7697"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/en-us\/wp-json\/wp\/v2\/tags?post=7697"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/en-us\/wp-json\/wp\/v2\/coauthors?post=7697"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}