You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-endpoint/run-analyzer-macos-linux.md
+6-5Lines changed: 6 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -7,7 +7,7 @@ f1.keywords:
7
7
ms.author: deniseb
8
8
author: denisebmsft
9
9
ms.localizationpriority: medium
10
-
ms.date: 06/28/2024
10
+
ms.date: 09/25/2024
11
11
manager: deniseb
12
12
audience: ITPro
13
13
ms.collection:
@@ -45,7 +45,7 @@ If you're using a terminal, download the tool by entering the following command:
45
45
2. Verify the download.
46
46
47
47
> [!NOTE]
48
-
> The current SHA256 hash of 'XMDEClientAnalyzerBinary.zip' that is downloaded from this link is: '6DF1D7F32F1C33B462067F029CA59742241AB6967A981161803A3BC4B5EBDBDF'
48
+
> The current SHA256 hash of `XMDEClientAnalyzerBinary.zip` that is downloaded from this link is: `6DF1D7F32F1C33B462067F029CA59742241AB6967A981161803A3BC4B5EBDBDF`.
49
49
50
50
- Linux
51
51
@@ -74,13 +74,14 @@ If you're using a terminal, download the tool by entering the following command:
74
74
cd XMDEClientAnalyzerBinary
75
75
```
76
76
77
-
5. Three new zip files are produced:
77
+
5. Two new zip files are produced:
78
78
79
79
- **SupportToolLinuxBinary.zip** : For all Linux devices
80
80
- **SupportToolMacOSBinary.zip** : For Mac devices
81
81
82
-
6. Unzip one of the above 2 zip files based on the machine you need to investigate.\
83
-
When using a terminal, unzip the file by entering one of the following commands based on OS type:
82
+
6. Unzip one of the above 2 zip files based on the machine you need to investigate.
83
+
84
+
When using a terminal, unzip the file by entering one of the following commands based on OS type:
Copy file name to clipboardExpand all lines: defender-xdr/microsoft-365-defender-portal.md
+5-6Lines changed: 5 additions & 6 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -124,23 +124,22 @@ You can add and remove different cards depending on your needs.
124
124
125
125
### Global search
126
126
127
-
> [!IMPORTANT]
128
-
> Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here. The search bar is located at the top of the page. As you type, suggestions are provided so that it's easier to find entities. The enhanced search results page centralizes the results from all entities.
129
-
130
127
The Microsoft Defender portal's search function is located at the top of the page. As you type, suggestions are provided so that it's easier to find entities. The enhanced search results page centralizes the results from all entities.
131
128
132
129
:::image type="content" source="/defender/media/microsoft-365-defender-portal/search-panel.png" alt-text="Screenshot of the search bar in the Microsoft Defender portal." lightbox="/defender/media/microsoft-365-defender-portal/search-panel.png":::
133
130
134
131
Search results are categorized by sections related to your search terms. You can search across the following entities in the Microsoft Defender portal:
135
132
136
-
-**Devices** - supported for Defender for Endpoint, Defender for Identity, Defender for Cloud, and Microsoft Sentinel (Preview).
137
-
-**Users** - supported for Defender for Endpoint, Defender for Identity, Defender for Cloud Apps, and Microsoft Sentinel (Preview).
133
+
-**Devices** - supported for Defender for Endpoint, Defender for Identity, Defender for Cloud, and Microsoft Sentinel.
134
+
135
+
-**Users** - supported for Defender for Endpoint, Defender for Identity, Defender for Cloud Apps, and Microsoft Sentinel.
136
+
138
137
-**Files, IPs, and URLs** - same capabilities as in Defender for Endpoint.
139
138
140
139
> [!NOTE]
141
140
> IP and URL searches are exact match and don't appear in the search results page – they lead directly to the entity page.
142
141
143
-
-**MDVM** - same capabilities as in Defender for Endpoint (vulnerabilities, software, and recommendations).
142
+
-**Microsoft Defender Vulnerability Management** - same capabilities as in Defender for Endpoint (vulnerabilities, software, and recommendations).
144
143
145
144
Search also provides results from relevant links in the Microsoft Tech Community portal, relevant documentation in Microsoft Learn, navigation items within the portal, and a link where you can provide feedback. Search history is stored in your browser and is accessible for the next 30 days.
Copy file name to clipboardExpand all lines: defender-xdr/security-copilot-defender-identity-summary.md
+3-3Lines changed: 3 additions & 3 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -51,21 +51,21 @@ You can access the identity summary capability in the following ways:
51
51
52
52
- From an incident page, choose an identity on the incident graph and then (1) select **User details**. In the user details pane, (2) select **Summarize**. The results are displayed in the Copilot side panel.
53
53
54
-
:::image type="content" source="/defender/media/copilot-in-defender/identity-summary/identity-summary-incident-small.png" alt-text="Screenshot showing the Summarize option in the user details pane." lightbox="/defender/media/copilot-in-defender/identity-summary/identity-summary-incident-small.png":::
54
+
:::image type="content" source="/defender/media/copilot-in-defender/identity-summary/identity-summary-incident-small.png" alt-text="Screenshot showing the Summarize option in the user details pane." lightbox="/defender/media/copilot-in-defender/identity-summary/identity-summary-incident.png":::
55
55
56
56
- Alternatively, you can select **Go to user page** on the bottom of the user details pane to open the user page. Copilot automatically generates the identity summary and displays the side panel upon opening the user page.
57
57
58
58
- You can also access the identity summary capability by choosing a user in the **Assets** tab of an incident. Select **Summarize** in the user details pane to generate the identity summary.
59
59
60
-
:::image type="content" source="/defender/media/copilot-in-defender/identity-summary/identity-summary-assets-small.png" alt-text="Screenshot showing the Assets tab and a user account highlighted." lightbox="/defender/media/copilot-in-defender/identity-summary/identity-summary-assets-small.png":::
60
+
:::image type="content" source="/defender/media/copilot-in-defender/identity-summary/identity-summary-assets-small.png" alt-text="Screenshot showing the Assets tab and a user account highlighted." lightbox="/defender/media/copilot-in-defender/identity-summary/identity-summary-assets.png":::
61
61
62
62
- In an alert page, select a user then select **Summarize** in the user details pane to generate the identity summary.
63
63
64
64
- In the advanced hunting page, you can access the identity summary capability by selecting a user in the results table, then selecting the link to the user page. Copilot automatically generates the identity summary and displays the side panel upon opening the user page.
65
65
66
66
- From the main menu, navigate to **Assets > Identities**. Select a username from the list, then select **View user page** to open the user page. Copilot automatically generates the identity summary and displays the side panel upon opening the user page.
67
67
68
-
:::image type="content" source="/defender/media/copilot-in-defender/identity-summary/identity-summary-viewuser-small.png" alt-text="Screenshot highlighting the view user page option in an username search within Identities." lightbox="/defender/media/copilot-in-defender/identity-summary/identity-summary-viewuser-small.png":::
68
+
:::image type="content" source="/defender/media/copilot-in-defender/identity-summary/identity-summary-viewuser-small.png" alt-text="Screenshot highlighting the view user page option in an username search within Identities." lightbox="/defender/media/copilot-in-defender/identity-summary/identity-summary-viewuser.png":::
69
69
70
70
- Type a username in the Microsoft Defender portal’s **search box** then select the username from the search results. In the user details side panel, select **Summarize** to generate the identity summary.
Copy file name to clipboardExpand all lines: defender-xdr/whats-new.md
+1Lines changed: 1 addition & 0 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -31,6 +31,7 @@ You can also get product updates and important notifications through the [messag
31
31
32
32
## September 2024
33
33
34
+
- (GA) The global search for entities in the Microsoft Defender portal is now generally available. The enhanced search results page centralizes the results from all entities. For more information, see [Global search in the Microsoft Defender portal](microsoft-365-defender-portal.md#global-search).
34
35
- (GA) Copilot in Defender now includes the identity summary capability, providing instant insights into a user's risk level, sign in activity, and more. For more information, see [Summarize identity information with Copilot in Defender](security-copilot-defender-identity-summary.md).
35
36
-[Microsoft Defender Threat Intelligence](/defender/threat-intelligence/what-is-microsoft-defender-threat-intelligence-defender-ti) customers can now view the [latest featured threat intelligence articles](/defender/threat-intelligence/learn-how-to-access-microsoft-defender-threat-intelligence-and-make-customizations-in-your-portal#featured-threat-intelligence-articles-widget) in the Microsoft Defender portal home page. The **Intel explorer** page now also has an [article digest](/defender/threat-intelligence/learn-how-to-access-microsoft-defender-threat-intelligence-and-make-customizations-in-your-portal#article-digest) that notifies them of the number of new Defender TI articles that were published since they last accessed the Defender portal.
36
37
-[Microsoft Defender XDR Unified RBAC permissions](experts-on-demand.md#required-permissions-for-using-ask-defender-experts) are added to submit inquiries and view responses from [Microsoft Defender Experts](experts-on-demand.md). You can also [view responses](experts-on-demand.md#where-to-view-responses-from-defender-experts) to inquires submitted to Ask Defender Experts through your listed email addresses when submitting your inquiry or in the Defender portal by navigating to **Reports** > **Defender Experts messages**.
0 commit comments