AMSI integration
Datto EDR now integrates with Windows Antimalware Scan Interface (AMSI) to expand visibility into script-based activity and improve detection coverage for fileless attacks. This helps you spot suspicious PowerShell and other scripting engine activity that can otherwise blend into normal admin work.
The Windows EDR agent adds AMSI detection components in a dedicated AMSI directory within the agent install path (including amsi.dll, keywords.enc, and damsi.sha). AMSI support is designed to inspect script content and alert on risky patterns, including interactive command activity and malicious keywords before execution.
One Complete Platform for IT & Security Management
Kaseya 365 is the all-in-one solution for managing, securing, and automating IT. With seamless integrations across critical IT functions, it simplifies operations, strengthens security, and boosts efficiency.
Is this email safe? INKY Smart Insights answers in seconds
INKY Smart Insights gives IT teams a plain-language verdict with cited evidence on flagged emails, cutting manual investigation time from 10 minutes to 5 seconds.
Read nowFake voicemails, real malware: Inside a 26,000-email SVG smuggling campaign
Attackers disguised malicious JavaScript as voicemail attachments across 26,589 emails targeting 5,527 organizations. Here's how the SVG smuggling campaign worked — and how INKY caught every one.
Read nowWhat sets the world's top MSPs apart?
Three-quarters of MSP 501 winners list security as a top revenue driver. We asked a six-time honoree what it actually takes to make the list — here's what separates the best from the rest.
Read now