Microsoft Defender Experts for Hunting reports
Update
Microsoft Defender XDR Updates
10.6KFollower
Software, firmware and hardware updates
Here you will find all software, firmware, and hardware updates from Microsoft Defender XDR. Stay up to date and follow this product – you will be automatically notified of updates.
use tasks in the Microsoft Defender portal to break down incident investigations into actionable steps
Updatehunt using the hunting graph, which renders rendering predefined threat scenarios as interactive graphs.
Updatethe number of query results displayed in the Microsoft Defender portal has been increased to 100,000.
Update(Preview) Advanced hunting now lets you investigate Microsoft Defender for Cloud behaviors.
Update(GA) In advanced hunting, you can now view all your user-defined rules
UpdateThe GraphApiAuditEvents table in advanced hunting is now available for preview.
Update(Preview) The DisruptionAndResponseEvents table, now available in advanced hunting
Updateuse the adx() operator to query tables stored in Azure Data Explore
Update(Preview) In advanced hunting, you can now view all your user-defined rules
UpdateYou can now view the details pane even for analytics rules
Update(Preview) You can now highlight your security operations achievements
Updateunified security summary
Updatecreate data security investigations in the Microsoft Defender portal with the integration of Microsoft Purview Data Security
Update(Preview) Contain IP addresses of undiscovered devices
UpdateOnboardingStatus and NetworkAdapterDnsSuffix columns
UpdateThe OAuthAppInfo table is now available for preview in advanced hunting.
UpdateYou can now link Threat analytics reports when setting up custom detections
UpdateYou can now view how Security Copilot came up with the query suggestion in its responses
UpdateIP addresses can now be excluded from automated responses in attack disruption
UpdateDevice activity events from Microsoft Sentinel's device entity pages are now visible
UpdateAdvanced hunting context panes are now available in custom detection experiences
UpdateDefender Boxed is available for a limited time in January and July of each year
UpdateMicrosoft Defender Experts for XDR now offers scoped coverage
UpdateLink to incident feature in Microsoft Defender
Update(Preview) Attack paths in the incident graph are now available
UpdateMicrosoft Defender XDR customers can now export incident data to PDF
UpdateMicrosoft Unified RBAC roles are added with new permission levels
UpdateThe global search for entities in the Microsoft Defender portal is now generally available
UpdateWas the content helpful to you?
