Skip to content

Commit 47ed149

Browse files
committed
updated images for TA types
1 parent 59b07d2 commit 47ed149

File tree

6 files changed

+11
-10
lines changed

6 files changed

+11
-10
lines changed

defender-xdr/threat-analytics.md

Lines changed: 6 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -91,21 +91,22 @@ Select a threat from the dashboard to view the report for that threat. You can a
9191

9292
You can filter the threat report list and view the most relevant reports according to a specific threat type or by type of report.
9393

94-
- **Threat tags**—assist you in viewing the most relevant reports according to a specific threat category. For example, the **Ransomware** tag includes all reports related to ransomware.
9594
- **Report types**—assist you in viewing the most relevant reports according to a specific report type. For example, the **Tools & techniques** tag includes all reports that cover tools and techniques.
95+
- **Threat tags**—assist you in viewing the most relevant reports according to a specific threat category. For example, the **Ransomware** tag includes all reports related to ransomware.
96+
9697

9798
The different tags have equivalent filters that assist you in efficiently reviewing the threat report list and filtering the view based on a specific threat tag or report type. For example, to view all threat reports related to ransomware category, or threat reports that involve vulnerabilities.
9899

100+
Report types are presented at the top of the threat analytics page. There are counters for the number of available reports under each type.
101+
102+
:::image type="content" source="/defender/media/threat-analytics/ta-dashboard-tags.png" alt-text="Screenshot of the threat analytics report types." lightbox="/defender/media/threat-analytics/ta-dashboard-tags.png":::
103+
99104
The Microsoft Threat Intelligence team adds threat tags to each threat report. The following threat tags are currently available:
100105
- Ransomware
101106
- Phishing
102107
- Activity group
103108
- Vulnerability
104109

105-
Threat tags are presented at the top of the threat analytics page. There are counters for the number of available reports under each tag.
106-
107-
:::image type="content" source="/defender/media/threat-analytics/ta-dashboard-tags.png" alt-text="Screenshot of the threat analytics report tags." lightbox="/defender/media/threat-analytics/ta-dashboard-tags.png":::
108-
109110
To set the types of reports you want in the list, select **Filters**, choose from the list, and select **Apply**.
110111

111112
:::image type="content" source="/defender/media/threat-analytics/ta-threattag-filters-mtp-tb.png" alt-text="Screenshot of the Filters list." lightbox="/defender/media/threat-analytics/ta-threattag-filters-mtp.png":::
-3.22 KB
Loading
-1.21 KB
Loading
-3.33 KB
Loading

defender/threat-intelligence/TOC.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@
99
href: reputation-scoring.md
1010
- name: Analyst insights
1111
href: analyst-insights.md
12-
- name: Microsoft Copilot for Security and Defender TI
12+
- name: Microsoft Security Copilot and Defender TI
1313
href: security-copilot-and-defender-threat-intelligence.md
1414
- name: Concept
1515
items:
@@ -29,9 +29,9 @@
2929
href: using-tags.md
3030
- name: Using projects
3131
href: using-projects.md
32-
- name: Using Microsoft Copilot in Defender for threat intelligence
32+
- name: Using Microsoft Copilot in Microsoft Defender for threat intelligence
3333
href: using-copilot-threat-intelligence-defender-xdr.md
34-
- name: Enabling data connector for Defender TI in Microsoft Sentinel (Preview)
34+
- name: Enabling data connector for Defender TI in Microsoft Sentinel
3535
href: /azure/sentinel/connect-mdti-data-connector
3636

3737
- name: Tutorials

defender/threat-intelligence/using-copilot-threat-intelligence-defender-xdr.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -16,15 +16,15 @@ ms.custom:
1616
- cx-ti
1717
- cx-mdti
1818
ms.topic: conceptual
19-
ms.date: 01/15/2025
19+
ms.date: 04/17/2025
2020
---
2121

2222
# Using Microsoft Security Copilot for threat intelligence
2323

2424
**Applies to:**
2525
- [Microsoft Defender XDR](/defender-xdr)
2626

27-
Microsoft Copilot in Defender applies the capabilities of [Microsoft Security Copilot](/copilot/security/microsoft-security-copilot) to deliver Microsoft Defender Threat Intelligence (Defender TI) information about threat actors and tools, as well as contextual threat intelligence, directly into the Microsoft Defender portal. Based on threat analytics reports, intel profiles, and other available Defender TI content, you can use Copilot in Defender to summarize the latest threats affecting your organization, know which threats to prioritize based on your exposure level, or gain more knowledge about your organization's or the global threat landscape.
27+
Microsoft Copilot in Microsoft Defender applies the capabilities of [Microsoft Security Copilot](/copilot/security/microsoft-security-copilot) to deliver Microsoft Defender Threat Intelligence (Defender TI) information about threat actors and tools, as well as contextual threat intelligence, directly into the Microsoft Defender portal. Based on threat analytics reports, intel profiles, and other available Defender TI content, you can use Copilot in Defender to summarize the latest threats affecting your organization, know which threats to prioritize based on your exposure level, or gain more knowledge about your organization's or the global threat landscape.
2828

2929
> [!NOTE]
3030
> Defender TI capabilities are also available in Security Copilot standalone experience through the Microsoft Threat Intelligence plugin. [Learn more about Defender TI integration with Security Copilot](security-copilot-and-defender-threat-intelligence.md)

0 commit comments

Comments
 (0)