This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How do we test if Advanced Threat Protection (ATP) is working?

Are there any recommended methods, best practices or tools to check Advanced Threat Protection (ATP) is working?



Edited TAGs
[edited by: emmosophos at 6:23 PM (GMT -7) on 7 Jun 2021]
Parents
  • Hi

    ATP collects data from different sources like DNS etc.

    You can try to find a C&C Server and resolve his DNS server. 

    Should work, but tbh ATP is not hard to configure :) 

     

    __________________________________________________________________________________________________________________

Reply
  • Hi

    ATP collects data from different sources like DNS etc.

    You can try to find a C&C Server and resolve his DNS server. 

    Should work, but tbh ATP is not hard to configure :) 

     

    __________________________________________________________________________________________________________________

Children