Skip to content

Commit 47c8bd1

Browse files
Merge pull request #302288 from mberdugo/UUFclarification
Uu fclarification
2 parents 473a36c + 3846f21 commit 47c8bd1

File tree

1 file changed

+11
-11
lines changed

1 file changed

+11
-11
lines changed

articles/sentinel/livestream.md

Lines changed: 11 additions & 11 deletions
Original file line numberDiff line numberDiff line change
@@ -1,31 +1,31 @@
11
---
2-
title: Detect threats by using hunting livestream in Microsoft Sentinel
3-
description: Learn how to use hunting livestream in Microsoft Sentinel to actively monitor a compromise event.
2+
title: Detect threats by using hunting livestream in Microsoft Sentinel
3+
description: Detect threats in real time with hunting livestream in Microsoft Sentinel. Set up sessions, receive notifications, and take action fast.
44
ms.topic: how-to
5-
ms.date: 04/24/2024
5+
ms.date: 07/06/2025
66
ms.author: monaberdugo
77
author: mberdugo
88
ms.collection: usx-security
99
appliesto:
10-
- Microsoft Sentinel in the Microsoft Defender portal
11-
- Microsoft Sentinel in the Azure portal
12-
13-
14-
#Customer intent: As a security analyst, I want to create and manage hunting livestream sessions so that I can detect and respond to threats in real-time.
15-
10+
- Microsoft Sentinel in the Microsoft Defender portal
11+
- Microsoft Sentinel in the Azure portal
12+
ms.custom:
13+
- ai-gen-docs-bap
14+
- ai-gen-description
15+
- ai-seo-date:07/06/2025
1616
---
1717

1818
# Detect threats by using hunting livestream in Microsoft Sentinel
1919

20-
Use hunting livestream to create interactive sessions that let you test newly created queries as events occur, get notifications from the sessions when a match is found, and launch investigations if necessary. You can quickly create a livestream session using any Log Analytics query.
20+
Use hunting livestream to create interactive sessions that let you test newly created queries as events occur, get notifications from the sessions when a match is found, and launch investigations if necessary. You can quickly create a livestream session using any Log Analytics query. This article is about hunting in Microsoft Sentinel which also exists in Defender. For advanced hunting in Microsoft Defender, see [Proactively hunt for threats with advanced hunting in Microsoft Defender](/defender-xdr/advanced-hunting-overview).
2121

2222
[!INCLUDE [unified-soc-preview](includes/unified-soc-preview.md)]
2323

2424
## Create a livestream session
2525

2626
You can create a livestream session from an existing hunting query, or create your session from scratch.
2727

28-
1. For Microsoft Sentinel in the [Azure portal](https://portal.azure.com), under **Threat management**, select **Hunting**.<br> For Microsoft Sentinel in the [Defender portal](https://security.microsoft.com/), select **Microsoft Sentinel** > **Threat management** > **Hunting**.
28+
1. For Microsoft Sentinel in the [Azure portal](https://portal.azure.com), under **Threat management**, select **Hunting**.<br> For Microsoft Sentinel in the [Defender portal](https://security.microsoft.com/), select **Microsoft Sentinel** > **Threat management** > **Hunting**. Make sure you select *Hunting*, and not *Advanced hunting*.
2929

3030
1. To create a livestream session from a hunting query:
3131

0 commit comments

Comments
 (0)