Microsoft Defender for Cloud
Hunting and detection

Attack path analysis and enhanced risk-hunting for containers

In brief

The article description, prerequisites wording, attack-path guidance link text, metadata, and publication date were updated. It now describes deploying a mock vulnerable container image to explore container risks with Cloud Security Explorer.

What Defender admins need to know

Administrators should use the refreshed prerequisites and terminology when following the test procedure; no configuration change is specified.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Attack path analysis and enhanced risk-hunting for containers

Prerequisites

Before you begin, make sure you have the following prerequisites:

Prerequisites

Before you begin, ensure you have the following prerequisites:

Prerequisites

Before you begin, make sure the following prerequisites are met:

  1. Locate the attack path related to the deployed resources.

Learn how toFor more information, see Identify and remediate attack paths.

Investigate container risks with Cloud Security Explorer