Skip to content

Commit 13fa797

Browse files
authored
Merge pull request #2019 from MicrosoftDocs/main
Published main to live, Tuesday 5:00 PM IST, 11/26
2 parents adb118a + 167a4fd commit 13fa797

File tree

1 file changed

+3
-6
lines changed

1 file changed

+3
-6
lines changed

defender-xdr/investigate-respond-container-threats.md

Lines changed: 3 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -18,7 +18,8 @@ search.appverid:
1818
- MET150
1919
ms.date: 11/18/2024
2020
appliesto:
21-
- Microsoft Defender XDR
21+
- ✅ <a href="https://learn.microsoft.com/defender-xdr/microsoft-365-defender" target="_blank">Microsoft Defender XDR</a>
22+
- <a href="https://learn.microsoft.com/unified-secops-platform/" target="_blank">Microsoft's unified security operations platform</a>
2223
---
2324
# Investigate and respond to container threats in the Microsoft Defender portal
2425

@@ -99,11 +100,7 @@ To determine the full scope of a container attack, you can deepen your investiga
99100

100101
In the [Advanced hunting](advanced-hunting-overview.md) page, you can extend your search for container-related activities using the **CloudProcessEvents** and **CloudAuditEvents** tables.
101102

102-
:::image type="content" source="/defender/media/defender-containers/adv-hunting-cloud-small.png" alt-text="Highlighting the advanced hunting tables related to cloud events." lightbox="/defender/media/defender-containers/adv-hunting-cloud.png":::
103-
104-
The **CloudProcessEvents** table contains information about process events in multi-cloud hosted environments such as Azure Kubernetes Service, Amazon Elastic Kubernetes Service, and Google Kubernetes Engine.
105-
106-
The **CloudAuditEvents table** contains cloud audit events from cloud platforms protected by Microsoft Defender for Cloud. It also contains Kubeaudit logs, which holds information about Kubernetes-related events.
103+
The [CloudProcessEvents](advanced-hunting-cloudprocessevents-table.md) table contains information about process events in multi-cloud hosted environments such as Azure Kubernetes Service, Amazon Elastic Kubernetes Service, and Google Kubernetes Engine. On the other hand, the [CloudAuditEvents](advanced-hunting-cloudauditevents-table.md) table contains cloud audit events from cloud platforms protected by Microsoft Defender for Cloud. It also contains Kubeaudit logs, which holds information about Kubernetes-related events.
107104

108105
## See also
109106

0 commit comments

Comments
 (0)