Comment by bjackman

Comment by bjackman 18 hours ago

4 replies

All the alternatives have a risk of setting off D&R tripwires. Assuming these things can spoof their device IDs so they look like a Logitech keyboard etc, I think the cost of the hardware setup is gonna easily pay for itself in terms of harder detection.

InfiniteLoup 8 hours ago

What does "D&R" stand for in this context?

  • mango7283 7 hours ago

    Detection and response - basically any remote access software usage is very likely to trigger an alert to the IT security team, either from the antivirus or EDR (endpoint detection and response, the most famous is Crowdstrike)