Skip to content

Commit 22964fb

Browse files
committed
2 parents 90347e7 + 2c44e42 commit 22964fb

13 files changed

+259
-22
lines changed

defender-xdr/access-den-graph-api.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@ title: Accessing incident notifications and DENs using Graph security API
33
ms.reviewer:
44
description: The method to access Defender Experts Notifications using Graph security API
55
ms.service: defender-experts
6-
ms.subservice: dex-xdr
6+
ms.subservice: dex-hunting
77
ms.author: vpattnaik
88
author: vpattnai
99
ms.localizationpriority: medium
@@ -15,7 +15,7 @@ ms.collection:
1515
- essentials-overview
1616
ms.topic: conceptual
1717
search.appverid: met150
18-
ms.date: 04/29/2024
18+
ms.date: 08/14/2024
1919
---
2020

2121
# Access incident notifications using Graph API

defender-xdr/before-you-begin-defender-experts.md

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,6 +3,7 @@ title: Key infrastructure requirements before enrolling in the Microsoft Defende
33
ms.reviewer:
44
description: This section outlines the key infrastructure requirements you must meet and important information on data access and compliance
55
ms.service: defender-experts
6+
ms.subservice: dex-hunting
67
ms.author: vpattnaik
78
author: vpattnai
89
ms.localizationpriority: medium
@@ -14,7 +15,7 @@ ms.collection:
1415
- tier1
1516
ms.topic: conceptual
1617
search.appverid: met150
17-
ms.date: 06/19/2024
18+
ms.date: 08/14/2024
1819
---
1920

2021
# Before you begin using Defender Experts for Hunting

defender-xdr/deception-overview.md

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -3,20 +3,20 @@ title: Manage the deception capability in Microsoft Defender XDR
33
description: Detect human-operated attacks with lateral movement in the early stages using high confidence signals from the deception feature in Microsoft Defender XDR.
44
ms.service: defender-xdr
55
f1.keywords:
6-
- NOCSH
6+
- NOCSH
77
ms.author: diannegali
88
author: diannegali
99
ms.localizationpriority: medium
1010
manager: dansimp
1111
audience: ITPro
1212
ms.collection:
13-
- m365-security
14-
- tier1
13+
- m365-security
14+
- tier1
1515
ms.topic: conceptual
1616
search.appverid:
17-
- MOE150
18-
- MET150
19-
ms.date: 08/08/2024
17+
- MOE150
18+
- MET150
19+
ms.date: 08/14/2024
2020
---
2121

2222
# Manage the deception capability in Microsoft Defender XDR
@@ -79,7 +79,7 @@ There are two types of lures available in the deception feature:
7979
8080
You can specify decoys, lures, and the scope in a deception rule. See [Configure the deception feature](configure-deception.md) to learn more about how to create and modify deception rules.
8181

82-
When an attacker uses a decoy or a lure on any Defender for Endpoint-onboarded client, the deception capability triggers an alert that indicates possible attacker activity, regardless of whether deception was deployed on the client or not.
82+
When an attacker uses a decoy on any Defender for Endpoint-onboarded client, the deception capability triggers an alert that indicates possible attacker activity, regardless of whether deception was deployed on the client or not.
8383

8484
## Identify incidents and alerts activated by deception
8585

defender-xdr/defender-experts-for-hunting.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -3,6 +3,7 @@ title: What is Microsoft Defender Experts for Hunting offering
33
ms.reviewer:
44
description: Microsoft Defender Experts for Hunting is a proactive threat hunting service that goes beyond the endpoint to hunt across endpoints
55
ms.service: defender-experts
6+
ms.subservice: dex-hunting
67
ms.author: vpattnaik
78
author: vpattnai
89
ms.localizationpriority: medium

defender-xdr/defender-experts-report.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@ ms.reviewer:
44
description: The Defender Experts for Hunting service publishes reports to help you understand all the threats the hunting service surfaced in your environment
55
search.appverid: met150
66
ms.service: defender-experts
7-
ms.subservice: dex-xdr
7+
ms.subservice: dex-hunting
88
f1.keywords:
99
- NOCSH
1010
ms.author: vpattnaik
@@ -17,7 +17,7 @@ ms.collection:
1717
- tier1
1818
- essentials-manage
1919
ms.topic: conceptual
20-
ms.date: 10/17/2023
20+
ms.date: 08/14/2023
2121
---
2222

2323
# Understand the Defender Experts for Hunting report in Microsoft Defender XDR

defender-xdr/experts-on-demand.md

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4,6 +4,7 @@ ms.reviewer:
44
description: Select Ask Defender Experts directly inside the Microsoft Defender security portal to get swift and accurate responses to all your threat hunting questions.
55
search.product: Windows 10
66
ms.service: defender-experts
7+
ms.subservice: dex-hunting
78
ms.mktglfcycl: deploy
89
ms.sitesec: library
910
ms.pagetype: security
@@ -18,7 +19,7 @@ ms.collection:
1819
- essentials-get-started
1920
ms.topic: conceptual
2021
search.appverid: met150
21-
ms.date: 04/18/2024
22+
ms.date: 08/14/2024
2223
---
2324

2425
# Collaborate with experts on demand

defender-xdr/onboarding-defender-experts-for-hunting.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -3,6 +3,7 @@ title: How to subscribe to Microsoft Defender Experts for Hunting
33
ms.reviewer:
44
description: If you're new to Microsoft Defender XDR and Defender Experts for Hunting, this is how you onboard, receive, and set up Defender experts notifications.
55
ms.service: defender-experts
6+
ms.subservice: dex-hunting
67
ms.author: vpattnaik
78
author: vpattnai
89
ms.localizationpriority: medium

exposure-management/TOC.yml

Lines changed: 5 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -6,6 +6,8 @@
66
items:
77
- name: What is Microsoft Security Exposure Management?
88
href: microsoft-security-exposure-management.md
9+
- name: What's new
10+
href: whats-new.md
911
- name: Compare Secure Score and Security Exposure Management
1012
href: compare-secure-score-security-exposure-management.md
1113
- name: Get started
@@ -29,7 +31,9 @@
2931
- name: Overview
3032
href: critical-asset-management.md
3133
- name: Review and classify critical assets
32-
href: classify-critical-assets.md
34+
href: classify-critical-assets.md
35+
- name: Predefined classifications
36+
href: predefined-classification-rules-and-levels.md
3337
- name: Work with attack paths
3438
items:
3539
- name: Overview

exposure-management/exposure-insights-overview.md

Lines changed: 1 addition & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -164,10 +164,7 @@ Events measure the score drop or worsening in the metric status. Events include:
164164

165165
- **Metric score drop events**: These events are issued with there's a decrease of at least 2% in metric score (exposure grew by 2%) since yesterday.
166166
- **Initiative score drop events**: These events are issued when there's a decrease of at least 2% in initiative score since yesterday.
167-
168-
169-
On the **Events** page for an initiative, you can view and filter events.
170-
167+
- **New Initiave event**: These events are issued when a new inititave is available in MSEM.
171168

172169
## Next steps
173170

exposure-management/get-started-exposure-management.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -101,4 +101,4 @@ You can hover over points on the timeline to see what the score of the key initi
101101

102102
- [Overview of attack paths](work-attack-paths-overview.md).
103103
- [Identify and manage critical assets](critical-asset-management.md).
104-
- [Improve security insights with exposure insights](exposure-insights-overview.md).
104+
- [Improve security insights with exposure insights](exposure-insights-overview.md).

0 commit comments

Comments
 (0)