Summary
This chapter expanded on many of the advanced and cloud-powered capabilities of Microsoft Defender Antivirus. You learned how cloud-delivered protection drastically improves the security of the OS, and how it facilitates things such as BAFS and EDR in block mode. You also learned how to fight against evasive action using tamper protection, to control unauthorized changes to MDAV.
In the next chapter, your understanding of MDAV will continue to grow as we explore ASR to minimize risk as early in the attack chain as possible.