Endpoint detection and response (EDR) is a category of security tools that monitor end-user hardware devices across a network for a range of suspicious activities and behavior. EDR platforms aim to provide a front-row seat for security staff along with a certain degree of automated response. The archetypical EDR use case would be when an active threat plays out in multiple forms across an endpoint, looking at patterns of action rather than simpler signals like a specific virus or the breaching of a firewall.”]
Source: https://www.csoonline.com/article/3451999/how-edr-stops-hackers-in-their-tracks.html