Skip to content

Commit bb7fef4

Browse files
Merge pull request #5431 from MicrosoftDocs/main
[AutoPublish] main to live - 10/31 19:53 PDT | 11/01 08:23 IST
2 parents 1180319 + 84ffc40 commit bb7fef4

File tree

7 files changed

+20
-223
lines changed

7 files changed

+20
-223
lines changed

.openpublishing.redirection.defender-xdr.json

Lines changed: 10 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -215,6 +215,16 @@
215215
"redirect_url": "/unified-secops-platform/mto-dashboard",
216216
"redirect_document_id": false
217217
},
218+
{
219+
"source_path": "defender-xdr/configure-deception.md",
220+
"redirect_url": "/defender-xdr/automatic-attack-disruption",
221+
"redirect_document_id": false
222+
},
223+
{
224+
"source_path": "defender-xdr/deception-overview.md",
225+
"redirect_url": "/defender-xdr/automatic-attack-disruption",
226+
"redirect_document_id": false
227+
},
218228
{
219229
"source_path": "defender-xdr/mto-endpoint-security-policy.md",
220230
"redirect_url": "/unified-secops-platform/mto-endpoint-security-policy",

defender-endpoint/advanced-features.md

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -2,8 +2,8 @@
22
title: Configure advanced features in Microsoft Defender for Endpoint
33
description: Turn on advanced features such as block file in Microsoft Defender for Endpoint.
44
ms.service: defender-endpoint
5-
ms.author: bagol
6-
author: batamig
5+
ms.author: painbar
6+
author: paulinbar
77
ms.reviewer: yongrhee
88
ms.localizationpriority: medium
99
manager: bagol
@@ -14,7 +14,7 @@ ms.collection:
1414
ms.topic: how-to
1515
ms.subservice: onboard
1616
search.appverid: met150
17-
ms.date: 02/25/2025
17+
ms.date: 10/31/2025
1818
appliesto:
1919
- Microsoft Defender for Endpoint Plan 2
2020

@@ -165,9 +165,9 @@ For more information about role assignments, see [Create and manage roles](user-
165165

166166
Enabling this feature allows you to run unsigned scripts in a live response session.
167167

168-
## Deception
168+
## Automatic attack disruption
169169

170-
Deception enables your security team to manage and deploy lures and decoys to catch attackers in your environment. After you turn this on, go to Rules > Deception rules to run deception campaigns. See [Manage the deception capability in Microsoft Defender XDR](/defender-xdr/deception-overview).
170+
Automatic attack disruption disrupts attacks by automatically containing compromised assets that the attacker is using. It limits lateral movement early on, thereby reducing the overall impact of an attack, both on the associated costs and on loss of productivity. At the same time, it leaves security operations teams in complete control of investigating, remediating, and bringing assets back online. For more information, see [Automatic attack disruption in Microsoft Defender XDR](/defender-xdr/automatic-attack-disruption).
171171

172172
## Share endpoint alerts with Microsoft Compliance Center
173173

defender-xdr/TOC.yml

Lines changed: 0 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -147,12 +147,6 @@
147147
href: autoad-results.md
148148
- name: Exclude assets from automated responses
149149
href: automatic-attack-disruption-exclusions.md
150-
- name: Manage the deception capability
151-
items:
152-
- name: Overview
153-
href: deception-overview.md
154-
- name: Configure capabilities
155-
href: configure-deception.md
156150
- name: Search for threats with advanced hunting
157151
items:
158152
- name: Overview

defender-xdr/configure-deception.md

Lines changed: 0 additions & 92 deletions
This file was deleted.

defender-xdr/deception-overview.md

Lines changed: 0 additions & 107 deletions
This file was deleted.

0 commit comments

Comments
 (0)