Behavior Monitoring in Defender for Endpoint for macOS - Let's see what's it all about..

Microsoft recently released a capability within Microsoft Defender for Endpoint which improves the early detection and prevention of suspicious and malicious activities targeting macOS users. I participated in early private previews and I was really impressed by its level of real-time monitoring and detection capabilities. According to Microsoft - "Behavior monitoring observes how software behaves in real-time to detect and analyze potential threats based on the behavior of the applications, daemons, and files within your system. Behavior monitoring is a cornerstone of Microsoft Defender’s cloud-based protection strategy." BM is being gradually rolled out, but once fully deployed, customers will benefit from this cloud-based protection within Microsoft Defender for Endpoint. As of writing this blog, there are of course some prerequisites that organizations will need to consider - 1. The device must be onboarded to Microsoft Defender for Endpoint. 2. Preview features mu...