Skip to content

Commit ad3e72a

Browse files
committed
updated text
1 parent dfcad76 commit ad3e72a

File tree

2 files changed

+6
-5
lines changed

2 files changed

+6
-5
lines changed

defender-xdr/manage-incidents.md

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -145,6 +145,9 @@ You can also add your own comments using the comment box available within the ac
145145

146146
:::image type="content" source="/defender/media/incidents-queue/fig5-res-manageincidents.png" alt-text="Screenshot highlighting the comment box from the incident page in the Microsoft Defender portal." lightbox="/defender/media/incidents-queue/fig5-manageincidents.png":::
147147

148+
> [!IMPORTANT]
149+
> Some information in this article relates to prereleased product which may be substantially modified before it's commercially released. Microsoft makes no warranties, express or implied, with respect to the information provided here.
150+
148151
## Export incident data to PDF
149152

150153
You can export an incident's data to PDF through the **Export incident as PDF** function and save it into PDF format. This function allows security teams to review an incident's details offline at any given time.
@@ -192,9 +195,7 @@ The report is cached for a couple of minutes. The system provides the previously
192195

193196
## Next steps
194197

195-
For new incidents, begin your [investigation](investigate-incidents.md).
196-
197-
For in-process incidents, continue your [investigation](investigate-incidents.md).
198+
For new and in-process incidents, continue your [incident investigation](investigate-incidents.md).
198199

199200
For resolved incidents, perform a [post-incident review](respond-first-incident-remediate.md).
200201

defender-xdr/whats-new.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -31,8 +31,8 @@ You can also get product updates and important notifications through the [messag
3131

3232
## November 2024
3333

34-
- (GA) Microsoft Defender XDR customers can now export incident data to PDF. Use the exported data to easily capture and share incident data to other stakeholders. For details, see **[Export incident data to PDF](manage-incidents.md#export-incident-data-to-pdf)**.
35-
- (GA) The [***go hunt***](investigate-incidents.md#go-hunt) action from the attack story graph and the **last update time** column in the [incident queue](incident-queue.md#incident-queue) are now generally available.
34+
- (Preview) Microsoft Defender XDR customers can now export incident data to PDF. Use the exported data to easily capture and share incident data to other stakeholders. For details, see **[Export incident data to PDF](manage-incidents.md#export-incident-data-to-pdf)**.
35+
- (GA) The **last update time** column in the [incident queue](incident-queue.md#incident-queue) is now generally available.
3636
- (GA) The `arg()` operator in [advanced hunting](advanced-hunting-defender-use-custom-rules.md#use-arg-operator-for-azure-resource-graph-queries) in Microsoft Defender portal is now generally available. Users can now use the *arg()* operator for Azure Resource Graph queries to search over Azure resources, and no longer need to go to Log Analytics in Microsoft Sentinel to use this operator if already in Microsoft Defender.
3737

3838
## October 2024

0 commit comments

Comments
 (0)