+“Behaviors” data type significantly enhances overall threat detection accuracy by reducing alerts on generic anomalies and instead surfacing alerts only when observed patterns align with real security scenarios. Defender for Cloud Apps customers can now use “Behaviors” to conduct investigations in [Advanced Hunting](https://learn.microsoft.com/en-us/defender-xdr/advanced-hunting-overview) more effectively, build better [custom detections](https://learn.microsoft.com/en-us/defender-xdr/custom-detection-rules) based on behavioral signals, and benefit from automatic inclusion of context-related behaviors into [incidents](https://learn.microsoft.com/en-us/defender-xdr/incidents-overview)—providing clearer context and helping SOC to reduce alert fatigue, prioritize and respond more efficiently.
0 commit comments