Microsoft Defender ATP for Linux - Definitive Supported Feature Set

BC-7787 1 Reputation point
2020-08-27T15:33:28.51+00:00

Is there a list of features Microsoft Defender ATP for Linux supports, especially compared to Defender ATP for Windows? Besides the "PUA" and "Archive Bomb" mentions in the preferences document, there's no list of features or detection-types for the Linux agent that I could find.
For example, does it support both signature-based and behavioral analysis for Linux? Is the list of detected and prevented malware-types have parity with the Windows agent? This is important information to have while organizations are comparing anti-malware vendors.

Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,837 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Jenny Feng 14,096 Reputation points
    2020-08-28T07:22:43.683+00:00

    Hi,

    As far as I know, there is no such list.

    All the information about Microsoft Defender ATP for Linux please refer to the following article:
    https://learn.microsoft.com/en-us/windows/security/threat-protection/microsoft-defender-atp/microsoft-defender-atp-linux

    Defender doesn't have a user interface on Linux -- it's all run from the command line, it works with the usual Linux-management tools like Ansible, Chef and Puppet, and configuration options are in a JSON file.

    Hope above information can help you.
    ---Please Accept as answer if the reply is helpful---

    0 comments No comments