You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: ATPDocs/whats-new.md
+13Lines changed: 13 additions & 0 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -22,6 +22,13 @@ For more information, see also:
22
22
23
23
For updates about versions and features released six months ago or earlier, see the [What's new archive for Microsoft Defender for Identity](whats-new-archive.md).
24
24
25
+
## March 2025
26
+
27
+
### New LDAP query events added to the IdentityQueryEvents table in Advanced Hunting
28
+
New LDAP query events will be added by March 6th to the `IdentityQueryEvents` table in Advanced Hunting to provide more visibility into additional LDAP search queries running in the customer environment.
29
+
This update may lead to an increase in activity within the Advanced Hunting IdentityQueryEvents table for LDAP queries. If you have custom detections related to these queries, you may see a higher number of triggered alerts.
30
+
We recommend that you review your existing custom detections to ensure they align with your objectives. If needed, you can adjust your query accordingly.
@@ -67,6 +74,12 @@ We have added and updated the following events in the `IdentityDirectoryEvents`
67
74
68
75
Additionally, the **built-in schema reference** for Advanced Hunting in Microsoft Defender XDR has been updated to include detailed information on all supported event types (**`ActionType`** values) in identity-related tables, ensuring complete visibility into available events. For more information, see [Advanced hunting schema details](/defender-xdr/advanced-hunting-schema-tables).
69
76
77
+
## January 2025
78
+
79
+
### New Identity guide tour
80
+
81
+
Explore key MDI features with the new **Identities Tour** in the M365 portal. Navigate Incidents, Hunting, and Settings to enhance identity security and threat investigation.
82
+
70
83
## December 2024
71
84
72
85
### New security posture assessment: Prevent Certificate Enrollment with arbitrary Application Policies (ESC15)
Copy file name to clipboardExpand all lines: CloudAppSecurityDocs/tutorial-dlp.md
-1Lines changed: 0 additions & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -79,7 +79,6 @@ Our approach to information protection can be split into the following phases th
79
79
1. Under **Inspection method**, choose and configure one of the following classification services:
80
80
81
81
-**[Data Classification Services](dcs-inspection.md)**: Uses classification decisions you've made across Microsoft 365, Microsoft Purview Information Protection, and Defender for Cloud Apps to provide a unified labeling experience. This is the preferred content inspection method as it provides a consistent and unified experience across Microsoft products.
82
-
-**[Built-in DLP](content-inspection-built-in.md)**: Inspects files for sensitive information using our built-in DLP content inspection engine.
83
82
84
83
1. For highly sensitive files, select **Create an alert** and choose the alerts you require, so that you're informed when there are files with unprotected sensitive information in your organization.
Copy file name to clipboardExpand all lines: defender-business/get-defender-business.md
+21-21Lines changed: 21 additions & 21 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -9,7 +9,7 @@ audience: Admin
9
9
ms.topic: overview
10
10
ms.service: defender-business
11
11
ms.localizationpriority: medium
12
-
ms.date: 06/07/2024
12
+
ms.date: 02/28/2025
13
13
ms.reviewer: efratka
14
14
f1.keywords: NOCSH
15
15
ms.collection:
@@ -35,12 +35,30 @@ Sections include:
35
35
36
36
To get Defender for Business, you can choose from several options:
37
37
38
+
- Work with a Microsoft partner who can help you get everything set up and configured.
38
39
- Try or buy the standalone version of Defender for Business.
39
40
- Get Microsoft 365 Business Premium, which includes Defender for Business.
40
-
- Work with a Microsoft partner who can help you get everything set up and configured.
41
41
42
42
Use the following tabs to learn more about each option.
43
43
44
+
## [Work with a Microsoft partner](#tab/findpartner)
45
+
46
+
Microsoft has a list of solution providers who are authorized to sell offerings, including Microsoft 365 Business Premium and Microsoft Defender for Business. If you'd prefer to work with a Microsoft partner, you can follow these steps to find a solution provider in your area:
47
+
48
+
1. Go to [Browse Partners](https://appsource.microsoft.com/en-us/marketplace/partner-dir).
49
+
50
+
2. In the **Filters** pane, specify search criteria, such as:
51
+
52
+
- Your location
53
+
- Your organization's size
54
+
-**Focus areas**, such as **Security** and/or **Threat Protection**
55
+
56
+
-**Services**, such as **Licensing** or **Managed Services (MSP)**
57
+
58
+
As soon as you select one or more criteria, the list of partners updates.
59
+
60
+
3. Review the list of results. Select a provider to learn more about their expertise and the services they provide.
61
+
44
62
## [Get Defender for Business (standalone)](#tab/getmdb)
45
63
46
64
Defender for Business provides advanced security protection for your company's devices. For more information, see [What is Microsoft Defender for Business](mdb-overview.md)?
@@ -77,24 +95,6 @@ Microsoft 365 Business Premium includes Defender for Business, Microsoft Defende
77
95
> [!IMPORTANT]
78
96
> Make sure to complete all the steps described in [Microsoft 365 Business Premium – productivity and cybersecurity for small business](/Microsoft-365/business-premium/m365bp-overview).
79
97
80
-
## [Work with a Microsoft partner](#tab/findpartner)
81
-
82
-
Microsoft has a list of solution providers who are authorized to sell offerings, including Microsoft 365 Business Premium and Microsoft Defender for Business. If you'd prefer to work with a Microsoft partner, you can follow these steps to find a solution provider in your area:
83
-
84
-
1. Go to the [Browse Partners](https://appsource.microsoft.com/en-us/marketplace/partner-dir).
85
-
86
-
2. In the **Filters** pane, specify search criteria, such as:
87
-
88
-
- Your location
89
-
- Your organization's size
90
-
-**Focus areas**, such as **Security** and/or **Threat Protection**
91
-
92
-
-**Services**, such as **Licensing** or **Managed Services (MSP)**
93
-
94
-
As soon as you select one or more criteria, the list of partners updates.
95
-
96
-
3. Review the list of results. Select a provider to learn more about their expertise and the services they provide.
97
-
98
98
---
99
99
100
100
## How to get Microsoft Defender for Business servers
@@ -113,7 +113,7 @@ Microsoft Defender for Business servers is an add-on to Defender for Business th
113
113
>
114
114
> - In order to add on Microsoft Defender for Business servers, you'll need at least one paid license for [Defender for Business](mdb-overview.md) (standalone) or [Microsoft 365 Business Premium](/Microsoft-365/business-premium/m365bp-overview).
115
115
> - There's a limit of 60 Microsoft Defender for Business servers licenses per subscription to Microsoft 365 Business Premium or Defender for Business.
116
-
> - If preferred, you could use [Microsoft Defender for Servers Plan 1 or Plan 2](/azure/defender-for-cloud/plan-defender-for-servers) instead to onboard your servers. To learn more, see [What happens if I have a mix of Microsoft endpoint security subscriptions](mdb-faq.yml#what-happens-if-i-have-a-mix-of-microsoft-endpoint-security-subscriptions)?
116
+
> - If preferred, you could use [Microsoft Defender for Servers Plan 1 or Plan 2](/azure/defender-for-cloud/plan-defender-for-servers) instead to onboard your servers.
0 commit comments