Skip to content

Commit a2c14f3

Browse files
authored
Merge pull request #1468 from MicrosoftDocs/main
Published main to live, Thursday 10:30 AM PST, 09/26
2 parents 30ee865 + f957335 commit a2c14f3

File tree

4 files changed

+15
-14
lines changed

4 files changed

+15
-14
lines changed

defender-endpoint/run-analyzer-macos-linux.md

Lines changed: 6 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -7,7 +7,7 @@ f1.keywords:
77
ms.author: deniseb
88
author: denisebmsft
99
ms.localizationpriority: medium
10-
ms.date: 06/28/2024
10+
ms.date: 09/25/2024
1111
manager: deniseb
1212
audience: ITPro
1313
ms.collection:
@@ -45,7 +45,7 @@ If you're using a terminal, download the tool by entering the following command:
4545
2. Verify the download.
4646

4747
> [!NOTE]
48-
> The current SHA256 hash of 'XMDEClientAnalyzerBinary.zip' that is downloaded from this link is: '6DF1D7F32F1C33B462067F029CA59742241AB6967A981161803A3BC4B5EBDBDF'
48+
> The current SHA256 hash of `XMDEClientAnalyzerBinary.zip` that is downloaded from this link is: `6DF1D7F32F1C33B462067F029CA59742241AB6967A981161803A3BC4B5EBDBDF`.
4949
5050
- Linux
5151

@@ -74,13 +74,14 @@ If you're using a terminal, download the tool by entering the following command:
7474
cd XMDEClientAnalyzerBinary
7575
```
7676

77-
5. Three new zip files are produced:
77+
5. Two new zip files are produced:
7878

7979
- **SupportToolLinuxBinary.zip** : For all Linux devices
8080
- **SupportToolMacOSBinary.zip** : For Mac devices
8181

82-
6. Unzip one of the above 2 zip files based on the machine you need to investigate.\
83-
When using a terminal, unzip the file by entering one of the following commands based on OS type:
82+
6. Unzip one of the above 2 zip files based on the machine you need to investigate.
83+
84+
When using a terminal, unzip the file by entering one of the following commands based on OS type:
8485

8586
- Linux
8687

defender-xdr/microsoft-365-defender-portal.md

Lines changed: 5 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -124,23 +124,22 @@ You can add and remove different cards depending on your needs.
124124

125125
### Global search
126126

127-
> [!IMPORTANT]
128-
> Some information relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here. The search bar is located at the top of the page. As you type, suggestions are provided so that it's easier to find entities. The enhanced search results page centralizes the results from all entities.
129-
130127
The Microsoft Defender portal's search function is located at the top of the page. As you type, suggestions are provided so that it's easier to find entities. The enhanced search results page centralizes the results from all entities.
131128

132129
:::image type="content" source="/defender/media/microsoft-365-defender-portal/search-panel.png" alt-text="Screenshot of the search bar in the Microsoft Defender portal." lightbox="/defender/media/microsoft-365-defender-portal/search-panel.png":::
133130

134131
Search results are categorized by sections related to your search terms. You can search across the following entities in the Microsoft Defender portal:
135132

136-
- **Devices** - supported for Defender for Endpoint, Defender for Identity, Defender for Cloud, and Microsoft Sentinel (Preview).
137-
- **Users** - supported for Defender for Endpoint, Defender for Identity, Defender for Cloud Apps, and Microsoft Sentinel (Preview).
133+
- **Devices** - supported for Defender for Endpoint, Defender for Identity, Defender for Cloud, and Microsoft Sentinel.
134+
135+
- **Users** - supported for Defender for Endpoint, Defender for Identity, Defender for Cloud Apps, and Microsoft Sentinel.
136+
138137
- **Files, IPs, and URLs** - same capabilities as in Defender for Endpoint.
139138

140139
> [!NOTE]
141140
> IP and URL searches are exact match and don't appear in the search results page – they lead directly to the entity page.
142141
143-
- **MDVM** - same capabilities as in Defender for Endpoint (vulnerabilities, software, and recommendations).
142+
- **Microsoft Defender Vulnerability Management** - same capabilities as in Defender for Endpoint (vulnerabilities, software, and recommendations).
144143

145144
Search also provides results from relevant links in the Microsoft Tech Community portal, relevant documentation in Microsoft Learn, navigation items within the portal, and a link where you can provide feedback. Search history is stored in your browser and is accessible for the next 30 days.
146145

defender-xdr/security-copilot-defender-identity-summary.md

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -51,21 +51,21 @@ You can access the identity summary capability in the following ways:
5151

5252
- From an incident page, choose an identity on the incident graph and then (1) select **User details**. In the user details pane, (2) select **Summarize**. The results are displayed in the Copilot side panel.
5353

54-
:::image type="content" source="/defender/media/copilot-in-defender/identity-summary/identity-summary-incident-small.png" alt-text="Screenshot showing the Summarize option in the user details pane." lightbox="/defender/media/copilot-in-defender/identity-summary/identity-summary-incident-small.png":::
54+
:::image type="content" source="/defender/media/copilot-in-defender/identity-summary/identity-summary-incident-small.png" alt-text="Screenshot showing the Summarize option in the user details pane." lightbox="/defender/media/copilot-in-defender/identity-summary/identity-summary-incident.png":::
5555

5656
- Alternatively, you can select **Go to user page** on the bottom of the user details pane to open the user page. Copilot automatically generates the identity summary and displays the side panel upon opening the user page.
5757

5858
- You can also access the identity summary capability by choosing a user in the **Assets** tab of an incident. Select **Summarize** in the user details pane to generate the identity summary.
5959

60-
:::image type="content" source="/defender/media/copilot-in-defender/identity-summary/identity-summary-assets-small.png" alt-text="Screenshot showing the Assets tab and a user account highlighted." lightbox="/defender/media/copilot-in-defender/identity-summary/identity-summary-assets-small.png":::
60+
:::image type="content" source="/defender/media/copilot-in-defender/identity-summary/identity-summary-assets-small.png" alt-text="Screenshot showing the Assets tab and a user account highlighted." lightbox="/defender/media/copilot-in-defender/identity-summary/identity-summary-assets.png":::
6161

6262
- In an alert page, select a user then select **Summarize** in the user details pane to generate the identity summary.
6363

6464
- In the advanced hunting page, you can access the identity summary capability by selecting a user in the results table, then selecting the link to the user page. Copilot automatically generates the identity summary and displays the side panel upon opening the user page.
6565

6666
- From the main menu, navigate to **Assets > Identities**. Select a username from the list, then select **View user page** to open the user page. Copilot automatically generates the identity summary and displays the side panel upon opening the user page.
6767

68-
:::image type="content" source="/defender/media/copilot-in-defender/identity-summary/identity-summary-viewuser-small.png" alt-text="Screenshot highlighting the view user page option in an username search within Identities." lightbox="/defender/media/copilot-in-defender/identity-summary/identity-summary-viewuser-small.png":::
68+
:::image type="content" source="/defender/media/copilot-in-defender/identity-summary/identity-summary-viewuser-small.png" alt-text="Screenshot highlighting the view user page option in an username search within Identities." lightbox="/defender/media/copilot-in-defender/identity-summary/identity-summary-viewuser.png":::
6969

7070
- Type a username in the Microsoft Defender portal’s **search box** then select the username from the search results. In the user details side panel, select **Summarize** to generate the identity summary.
7171

defender-xdr/whats-new.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -31,6 +31,7 @@ You can also get product updates and important notifications through the [messag
3131

3232
## September 2024
3333

34+
- (GA) The global search for entities in the Microsoft Defender portal is now generally available. The enhanced search results page centralizes the results from all entities. For more information, see [Global search in the Microsoft Defender portal](microsoft-365-defender-portal.md#global-search).
3435
- (GA) Copilot in Defender now includes the identity summary capability, providing instant insights into a user's risk level, sign in activity, and more. For more information, see [Summarize identity information with Copilot in Defender](security-copilot-defender-identity-summary.md).
3536
- [Microsoft Defender Threat Intelligence](/defender/threat-intelligence/what-is-microsoft-defender-threat-intelligence-defender-ti) customers can now view the [latest featured threat intelligence articles](/defender/threat-intelligence/learn-how-to-access-microsoft-defender-threat-intelligence-and-make-customizations-in-your-portal#featured-threat-intelligence-articles-widget) in the Microsoft Defender portal home page. The **Intel explorer** page now also has an [article digest](/defender/threat-intelligence/learn-how-to-access-microsoft-defender-threat-intelligence-and-make-customizations-in-your-portal#article-digest) that notifies them of the number of new Defender TI articles that were published since they last accessed the Defender portal.
3637
- [Microsoft Defender XDR Unified RBAC permissions](experts-on-demand.md#required-permissions-for-using-ask-defender-experts) are added to submit inquiries and view responses from [Microsoft Defender Experts](experts-on-demand.md). You can also [view responses](experts-on-demand.md#where-to-view-responses-from-defender-experts) to inquires submitted to Ask Defender Experts through your listed email addresses when submitting your inquiry or in the Defender portal by navigating to **Reports** > **Defender Experts messages**.

0 commit comments

Comments
 (0)