1,420 questions with Microsoft Defender for Cloud-related tags
Microsoft Defender for Endpoint for US Government customers
Hi, are these endpoints still relevant? I'm having issues configuring them with GCC High. https://zcusa.951200.xyz/en-us/defender-endpoint/gov#api
MS Defender Automated Simulation Training: How to have new users to live attack simulation training
Hi I am trying to setup MS Defender attack simulation training for staff. I have a number of queries regarding setup. 1: We have a live training campaign which we require all new staff members to complete. Please outline the process of having a new user…
"Disabled accounts with X permissions on Azure resources should be removed" is Showing Active Accounts
I review our Microsoft Defender Secure Score for each of 3 subscriptions weekly and noticed a huge reduction in one of them. The following are the recommendations for this subscription in particular: "Disabled accounts with read and write…
How can I retrieve both Active and Disabled Vulnerabilities from Azure Defender for Cloud using Graph Query?
Working with the "Azure registry container images should have vulnerabilities resolved" recommendation in Defender for Cloud, my company wants to prevent this rec from effecting our security score, but without setting an exemption for the rec…
Difference between Microsoft Defender for Business and Defender for Endpoint?
Hi. Would be pleased to have these answers. Thank you. What is the difference between Microsoft Defender for Business and Defender for Endpoint? Is Defender for Endpoint included in Defender for Business? Is there any limitation for in Defender for…
Azure secure score
Hi, We have issues regarding defender for cloud and secure score. There has been a massive drop the latest month. What spesific is the issue or changes that you have made? We also need information if there will be any new changes. We have customers…
defender is not publishing the health docker image health status even after 3 hrs
I could see azure defender cloud is not publishing health status of a docker images which got pushed to the ACR repository even after 3 hrs . This is kept on happening for multiple images randomly I have raise multiple complains not getting a proper and…
OpenSSL Vulnerability Shown on Microsoft Defender for Cloud Dashboard - OneDrive affected app
An OpenSSL vulnerability has been flagged on one of our devices by Microsoft Defender for Cloud. The vulnerability has listed two dll files as the main culprits (both installed via OneDrive): libcrypto-3-x64.dll libssl-3-x64.dll The OneDrive version…
Can we send Defender for Cloud's logs to Sentinel's LAW without "Defender for cloud connector" configured in Sentinel?
Question: While deploying Defender for Cloud, if we select the same LAW (workspace) that Sentinel is using, do we still need to configure Defender for Cloud connector and configure it in Sentinel? In this scenario, do Defender for Cloud and Sentinel's…
Microsoft Defender for Endpoint not Onboarding
Hello, My team is having trouble onboarding Microsoft Defender for Endpoint because the Advanced Threat Protection Service won't start. It looks like the SENSE service is also not starting and is stuck in START_PENDING. I tried rebooting the device and…
OpenSSL vulnerabilities in Defender for latest version Microsoft Products
My org has several OpenSSL vulnerabilities for OneDrive and Azure Disk Encryption. The CVEs are CVE-2024-4603, CVE-2024-4741, CVE-2024-5535, and Defender was said to fix inaccuracies with these last month (Sept. 2024).…
Integrating Microsoft Defender for Cloud Apps with Microsoft Defender for Cloud
The CIS Benchmark 2.1 for Azure recommends integrating Microsoft Defender for Cloud Apps with Microsoft Defender for Cloud by selecting the appropriate setting. However, the method described in the CIS document does not work for us as we cannot find the…
Defender recommendation issue
In Defender for cloud, I'm getting Windows virtual machines should enable Azure Disk Encryption or EncryptionAtHost recommendations, but in my Azure VM EncryptionAtHost enabled already, I have checked connection between VM and Azure monitor and also…
Failed to save server plans for this subscription
We have parched defender for plan2, we can save all the settings without File Integrity and Monitoring settings.
Microsoft XDR (Defender) - How to export - Advanced Hunting - Custom Detection Rules
Hello everyone, Our team is trying to export the Custom Detection Rules. We have more than 50 rules, so we need an automated process that allows us to export and import the rules. Currently, we see that the API function that allows this is still in beta:…
Actually I created logic app work flow and I created microsoft defender so my aim is when ever trigger the logic app and we created work item as well but it run's successfully but i;m not able to saw the alearts in dev portal in azure boards
Actually I created logic app work flow and I created microsoft defender so my aim is when ever trigger the logic app and we created work item as well but it run's successfully but i;m not able to saw the alearts in dev portal in azure boards
Defender cloud for SQL
Hello, when i navigate to defender cloud i got this warning. Anyone know if this process will have downtime for the SQL? Also is there any extra cost?
Microsoft Defender Variant
Hello, When we installing windows server or windows workstation, the windows defender is included and this is free of cost. Also when we have office365 subscription there are windows defender also and this is paid version. So what different between free…
Unable to compare the difference of current and new upgrade in Defender plan for storage
Current plan price in terms of the transactions count but present plan price in terms of the storage accounts count. I didn't understand difference between the current and new plan prices, features. Suppose after upgrading to new plan for the Microsoft…
Problems with Microsoft Defender for Cloud identity recommendations V2
The new set of identity related recommendations when GA on 2023-05-01: https://github.com/MicrosoftDocs/azure-docs/commit/aba0c46fdabe84065951c96a7df75333a0493cac#diff-dbd404e58cedaa40736d88385d006caf82189af9cac95af849538aab5c5b57d8L70-L78 As a result…