About 59 results
Open links in new tab
  1. Hunting graph in advanced hunting - Microsoft Defender XDR

    Sep 30, 2025 · Where to find hunting graph You can find the hunting graph page by going to the left navigation bar in the Microsoft Defender portal and selecting Investigation & response > …

  2. Overview - Advanced hunting - Microsoft Defender XDR

    Sep 9, 2025 · Learn about advanced hunting queries in Microsoft Defender and how to use them to proactively find threats and weaknesses in your network.

  3. Threat hunting features across the Microsoft Defender portal

    May 26, 2025 · Hunting for security threats is a highly customizable activity that is most effective when accomplished across all stages of threat hunting: proactive, reactive, and post incident. …

  4. What is Microsoft Defender Experts for Hunting offering

    Aug 1, 2025 · Microsoft Defender Experts for Hunting - Servers is an add-on to Defender Experts for Hunting - XDR, providing proactive threat hunting for hybrid and multicloud servers Our …

  5. Take action on advanced hunting query results

    2 days ago · Required permissions To take action on devices through advanced hunting, you need a role in Microsoft Defender for Endpoint with permissions to submit remediation actions …

  6. Microsoft Security Copilot in advanced hunting

    Oct 26, 2025 · Open the Advanced hunting page from the navigation bar in Microsoft Defender portal. The Security Copilot side pane for advanced hunting appears at the right hand side. …

  7. Before you begin using the Microsoft Defender Experts for Hunting ...

    Sep 18, 2025 · Seek assistance from Defender Experts. This document outlines the key infrastructure requirements you must meet and important information on data access and …

  8. Start using Microsoft Defender Experts for Hunting

    Oct 30, 2024 · If you're new to Microsoft Defender XDR and Defender Experts for Hunting, this is how you onboard, receive, and set up Defender experts notifications.

  9. FAQs related to Microsoft Defender Experts for Hunting service ...

    Jun 27, 2025 · Frequently asked questions related to the Microsoft Defender Experts for hunting service

  10. Use shared queries in Microsoft Defender advanced hunting

    Oct 22, 2024 · Start threat hunting immediately with predefined and shared queries. Share your queries to the public or to your organization.

  11. Threat hunting in Threat Explorer and Real-time detections

    May 19, 2025 · Learn about threat hunting and remediation in Microsoft Defender for Office 365 using Threat Explorer or Real-time detections in the Microsoft Defender portal.

  12. Conduct end-to-end threat hunting with Hunts - Microsoft Sentinel

    Jul 1, 2025 · Learn how to use hunts for conducting end-to-end proactive threat hunting. Seek out undetected threats based on hypothesis or start broadly and refine your searches with this …

  13. Custom functions in the advanced hunting schema - Microsoft …

    Mar 28, 2025 · A function is a type of query in advanced hunting that can be used in other queries as if it's a command. You can create your own custom functions so you can reuse any query …

  14. Work with advanced hunting query results in Microsoft Defender ...

    Oct 30, 2025 · While you can construct your advanced hunting queries to return precise information, you can also work with the query results to gain further insight and investigate …

  15. Microsoft Defender XDR Advanced hunting API

    Advanced hunting is a threat-hunting tool that uses specially constructed queries to examine the past 30 days of event data in Microsoft Defender XDR. You can use advanced hunting queries …

  16. UrlClickEvents table in the advanced hunting schema - Microsoft ...

    Jun 11, 2025 · Learn how to hunt for phishing campaigns and suspicious clicks using the UrlClickEvents table in the advanced hunting schema.

  17. IdentityLogonEvents table in the advanced hunting schema

    Jun 20, 2025 · The IdentityLogonEvents table in the advanced hunting schema contains information about authentication activities made through your on-premises Active Directory …

  18. Advanced hunting in Microsoft Defender multitenant management

    Oct 28, 2025 · Advanced hunting in Microsoft Defender multitenant management allows you to proactively hunt for intrusion attempts and breach activity in email, data, devices, and …

  19. EntraIdSignInEvents table in the advanced hunting schema …

    Nov 4, 2025 · Use this reference to construct queries that return information from the table. For information on other tables in the advanced hunting schema, see the advanced hunting …

  20. Use the advanced hunting query resource report

    Aug 4, 2025 · Understand various quotas and usage parameters (service limits) that keep the advanced hunting service responsive

  21. Advanced Hunting API - Microsoft Defender for Endpoint

    Learn to use the advanced hunting API to run advanced queries on Microsoft Defender for Endpoint. Find out about limitations and see an example.