Threat Analytics
In brief
The documentation now directs users to check the Threat intelligence section when an emailed threat analytics report is missing from Threat analytics.
What Defender admins need to know
This helps administrators find reports that are not visible in the expected section.
Summaries are generated from the documentation change itself.
Documentation change
The comparison below shows only the changed extract. Use the full-page view for complete context.
- Antivirus-related statistics are based on Microsoft Defender Antivirus settings.
- The Misconfigured devices column in the main Threat analytics page shows the number of devices affected by a threat when the threat's related recommended actions aren't turned on. However, if Microsoft researchers don't link any recommended actions, the Misconfigured devices column shows the status Not available.
- The Vulnerable devices column in the main Threat analytics page shows the number of devices running software that are vulnerable to any of the vulnerabilities linked to the threat. However, if Microsoft researchers don't link any vulnerabilities, the Vulnerable devices column shows the status Not available.
- If you receive an email notification about a threat analytics report but can't find it in Threat analytics, check the Threat intelligence section of the portal for it.
See also
[!INCLUDE Microsoft Defender XDR rebranding]
\ No newline at end of file
[!INCLUDE Microsoft Defender XDR rebranding]
@@ -251,6 +251,7 @@ When you review the threat analytics data, consider the following factors: - Antivirus-related statistics are based on Microsoft Defender Antivirus settings. - The **Misconfigured devices** column in the main Threat analytics page shows the number of devices affected by a threat when the threat's related recommended actions aren't turned on. However, if Microsoft researchers don't link any recommended actions, the **Misconfigured devices** column shows the status *Not available*. - The **Vulnerable devices** column in the main Threat analytics page shows the number of devices running software that are vulnerable to any of the vulnerabilities linked to the threat. However, if Microsoft researchers don't link any vulnerabilities, the **Vulnerable devices** column shows the status *Not available*.+- If you receive an email notification about a threat analytics report but can't find it in **Threat analytics**, check the **Threat intelligence** section of the portal for it. ## See also @@ -258,4 +259,4 @@ When you review the threat analytics data, consider the following factors: - [Understand the analyst report section](threat-analytics-analyst-reports.md) - [Assess and resolve security weaknesses and exposures](/windows/security/threat-protection/microsoft-defender-atp/next-gen-threat-and-vuln-mgt) -[!INCLUDE [Microsoft Defender XDR rebranding](../includes/defender-m3d-techcommunity.md)]\ No newline at end of file+[!INCLUDE [Microsoft Defender XDR rebranding](../includes/defender-m3d-techcommunity.md)] 