/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

← → days · ↑ ↓ browse · Enter similar · o open

Microsoft says Microsoft Defender for Endpoint now blocks cryptojacking malware using Intel's silicon-based Threat Detection Technology

Microsoft today announced that Microsoft Defender for Endpoint, the enterprise version of its Windows 10 Defender antivirus, now comes with support …

BleepingComputer Sergiu Gatlan

Context & Ripple Effects

Microsoft’s enterprise Defender service began as a cloud-based system for detecting breaches from system behavior, then expanded through third-party security data across major operating systems. Later additions such as default-on tamper protection moved the product toward harder-to-disable endpoint controls.

The Intel integration extends that trajectory from software and cloud signals to silicon-derived telemetry, giving Defender for Endpoint another detection layer for a malware category that consumes endpoint resources.

First-order effects

  • Microsoft Defender for Endpoint customers gain cryptojacking blocking that incorporates Intel Threat Detection Technology, while Intel gains a direct role in an enterprise endpoint-security control.
  • Microsoft can position Defender’s protection as combining cloud behavior analysis, endpoint controls, and processor-level detection rather than relying on a single security layer.

Second-order effects

  • Endpoint-security rivals face pressure to match hardware-assisted detection integrations or demonstrate equivalent coverage through their own telemetry and detection stacks.
  • Enterprise buyers evaluating endpoint protection gain another reason to weigh the hardware environment alongside the security software deployed on managed devices.

Third-order effects

  • If hardware-assisted integrations become standard, endpoint security will increasingly be differentiated by the breadth of cooperation among operating-system, cloud-security, and chip vendors rather than by antivirus software alone.

The trend: Enterprise endpoint defense is becoming a layered platform in which cloud analytics, device controls, and silicon telemetry are integrated to widen enforcement coverage.

Discussion

  • @campuscodi Catalin Cimpanu on x
    Intel's TDT feature is seeing broader adoption. After Cybereason used TDT to create a ransomware detection module, Microsoft is now using it for the commercial version of Defender to detect crypto-mining malware https://therecord.media/... https://twitter.com/...
  • @campuscodi Catalin Cimpanu on x
    Blame this on the rising number of malware strains that now use AV evasion techniques and the groups that rely on VMs to avoid detection. Technically, TDT could counter some of these trends. See MSFT explainer: https://www.microsoft.com/... https://twitter.com/...