@Nazani the best protection is to have regular updated backups to allow reverting back to a working state. If your friends don't make backups then it is akin to driving without wearing a seatbelt! Most home users are unlikely to be hit by the current #Microsoft #crowd_strike outages unless using #microsof365 - all my systems have been fine today & are all fully updated / backed up!

Do you need a "one page" guide to investigate suspicious activity in Microsoft 365 and Microsoft Entra?

This guide contains the artifacts that Microsoft Incident Response hunts for and uses daily. This includes E-mail manipulations, Data collections, Login events etc.

You can also read & download more here: https://www.microsoft.com/en-us/security/blog/2024/01/17/new-microsoft-incident-response-guides-help-security-teams-analyze-suspicious-activity/?msockid=0f62e881cee7693e2d81fc18cf1268e1

#microsoft #irt #security #microsof365 #msftadvocate #entra #cybersecurity

New Microsoft Incident Response guides help security teams analyze suspicious activity | Microsoft Security Blog

Access the first two cloud investigation guides from Microsoft Incident Response to improve triage and analysis of data in Microsoft 365 and Microsoft Entra ID.

Microsoft Security Blog