118 questions with Microsoft Defender for Cloud Apps-related tags

Sort by: Updated
0 answers

How can I get the badge of my challenge ?

Get challenge bage

Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-06-02T07:53:39.6266667+00:00
49204756 0 Reputation points
0 answers

We have files or folder restored by Danet which assigns us as the owner, but when the tenancy user shares or accesses a file, it generates a Cloud Apps Alert. It's a false alert and shouldn't assign us as the owner.

We have files or folder restored by Danet which assigns us as the owner, but when the tenancy user shares or accesses a file, it generates a Cloud Apps Alert. It's a false alert and shouldn't assign us as the owner.

Microsoft 365
Microsoft 365
Formerly Office 365, is a line of subscription services offered by Microsoft which adds to and includes the Microsoft Office product line.
4,204 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-05-29T10:19:41.65+00:00
edited the question 2023-05-30T20:57:45.9733333+00:00
JamesTran-MSFT 36,531 Reputation points Microsoft Employee
2 answers

O365 MS Defender URL indicator - URL is invalid

Hi, I'm trying to add URL Indicators in MS Defender but it doesn't seem to work. I've created a CSV file (based on the sample file provided by Microsoft). I did not fill in the columns for ExpirationTime, RecommendedActions, RbacGroups, Category,…

Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,815 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-05-15T12:55:00.8833333+00:00
80463912 0 Reputation points
answered 2023-05-22T08:19:03.81+00:00
80463912 0 Reputation points
2 answers

Testing policy - Potential ransomware activity, nothing happens

I am testing Cloud Apps Security and I want to launch potential threat in action. So the policy "Potential ransomware activity" is enabled for all users, computer is onboarded to Defender for Endpoint, and when I create locally .zyx file and…

Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-05-19T16:45:30.2466667+00:00
Pavel yannara Mirochnitchenko 12,386 Reputation points MVP
answered 2023-05-20T10:19:22.0266667+00:00
Pavel yannara Mirochnitchenko 12,386 Reputation points MVP
2 answers

Troubleshoot SIEM tool integration issues

we have followed the docs to collect data from Microsoft Azure Event Hub, for Microsoft Defender integration on elastic stack. for some reason we're not receiving the data?

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
174 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-05-02T21:05:42.3033333+00:00
12980401 0 Reputation points
commented 2023-05-18T20:12:36.2933333+00:00
12980401 0 Reputation points
1 answer One of the answers was accepted by the question author.

Is it recommended to block third party cookies for web browsers specially Chrome and Edge?

Is it recommended to block third party cookies for web browsers specially Chrome and Edge? As we have below security recommendation for the same. What all would be impacted and how to measure it?

Microsoft Edge
Microsoft Edge
A Microsoft cross-platform web browser that provides privacy, learning, and accessibility tools.
2,219 questions
Windows 10
Windows 10
A Microsoft operating system that runs on personal computers and tablets.
11,046 questions
Microsoft Intune Application management
Microsoft Intune Application management
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Application management: The process of creating, configuring, managing, and monitoring applications.
908 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,654 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-05-03T14:01:28.8833333+00:00
Vinod Survase 4,716 Reputation points
commented 2023-05-12T02:13:14.9133333+00:00
Lu Dai-MSFT 28,366 Reputation points
2 answers

edit severity forwarding/redirect rule from informational to High

Hiya, we have an information alert regarding forwarding/redirect rule. We are not firing emails off for informational else we would be swamped with emails. Is there a way to change this forwarding/redirect rule. to high rather than informational , or is…

Microsoft Exchange Online Management
Microsoft Exchange Online Management
Microsoft Exchange Online: A Microsoft email and calendaring hosted service.Management: The act or process of organizing, handling, directing or controlling something.
4,338 questions
Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,460 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
174 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-04-26T13:48:21.1933333+00:00
Ray Waldron 41 Reputation points
commented 2023-05-02T07:28:44.6233333+00:00
Aholic Liang-MSFT 13,821 Reputation points Microsoft Vendor
1 answer

Track change on DC with Defender for Identity?

We have 2016 Domain Controllers and Auditing is enabled. We are trying to configure/deny read permission, for members of a group, over the Domain Admins group in Active Directory. But something is removing that change after some time.    I can find…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
174 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-04-25T21:59:27.9533333+00:00
RT-7199 511 Reputation points
answered 2023-04-25T22:11:28.7833333+00:00
Andrew Blumhardt 9,831 Reputation points Microsoft Employee
1 answer

ALERT: Password reuse activity on multiple endpoints

We have started receiving multiple Defender alerts from yesterday - 20th April early morning. "A user on this device is reusing the currently logged in account password on a different credential. Use new and complex password for each credential to…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Intune Configuration
Microsoft Intune Configuration
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Configuration: The process of arranging or setting up computer systems, hardware, or software.
1,782 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-04-21T11:00:31.3766667+00:00
Rakesh Sukumaran 0 Reputation points
answered 2023-04-24T02:23:13.0066667+00:00
Lu Dai-MSFT 28,366 Reputation points
1 answer

How to get defender for cloud plans activated for a long analytics workspace through powershell?

Hello everyone, I am trying to get the defender for cloud plans activated for a log analytics workspace through powershell, but there is no such command in powershell to get that. Can anyone help me with this would be highly appreciated. Thanks in…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
174 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-04-21T09:31:02.17+00:00
Lakshmi Bharath Kumar Dasa 0 Reputation points
answered 2023-04-22T12:31:46.8066667+00:00
David Broggy 5,701 Reputation points MVP
0 answers

ALERT: Password reuse activity - Behaviour

Hi Everyone. Recently we receive a bunch of the next Alerts!: Password reuse activity that is triggered every 3 minutes on Microsoft 365 Defender. The question here is, if anyone known the behavior or parameters that this alerts use to trigger the…

Microsoft 365
Microsoft 365
Formerly Office 365, is a line of subscription services offered by Microsoft which adds to and includes the Microsoft Office product line.
4,204 questions
Microsoft Intune Security
Microsoft Intune Security
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
370 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-04-20T00:30:46.91+00:00
Sergy Lopez 161 Reputation points
commented 2023-04-20T15:54:30.8533333+00:00
Sergy Lopez 161 Reputation points
1 answer

What is Microsoft recommended secure score for m365 defender workloads includes MDO, MDE, MDI and MDCloudApps?

What is Microsoft recommended secure score for m365 defender workloads includes MDO, MDE, MDI and MDCloudApps? How to make sure everything is in place in terms of securing environment?

Microsoft 365
Microsoft 365
Formerly Office 365, is a line of subscription services offered by Microsoft which adds to and includes the Microsoft Office product line.
4,204 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
174 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-04-05T08:24:58.93+00:00
Vinod Survase 4,716 Reputation points
edited the question 2023-04-10T08:15:26.09+00:00
PRADEEPCHEEKATLA-MSFT 83,966 Reputation points Microsoft Employee
3 answers

Is there a Q&A tag for questions related to Defender's portal: security.microsoft.com?

Is there a tag for questions related to Defender's portal: security.microsoft.com? With features like Defender for Endpoint, Defender for Cloud Apps and more being centralized here it might be useful to track these questions using a tag.

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Intune
Microsoft Intune
A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.
4,654 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-03-31T15:18:27.1566667+00:00
David Broggy 5,701 Reputation points MVP
answered 2023-04-03T11:56:28.26+00:00
Pavel yannara Mirochnitchenko 12,386 Reputation points MVP
0 answers

Logic app not getting triggered for malicious file upload.

I have created a logic app for detetcting malicious file upload with trigger being when an Azure Security Center Alert is created or triggered but whenever malicious file is uploaded it does not get triggered. I have checked for subscription/policy for…

Azure Logic Apps
Azure Logic Apps
An Azure service that automates the access and use of data across clouds without writing code.
2,961 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-03-15T04:07:27.8466667+00:00
Kjabs 0 Reputation points
commented 2023-03-20T06:25:50.6133333+00:00
MayankBargali-MSFT 69,941 Reputation points
3 answers

Onboard Defender for Endpoint without AD

Hello Is it possible to onboard a Windows 10 machine to Defender for Endpoint that is not connected to Active Directory and not Azure AD Hybrid joined? Thanks

Windows 10 Security
Windows 10 Security
Windows 10: A Microsoft operating system that runs on personal computers and tablets.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
2,815 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Intune Security
Microsoft Intune Security
Microsoft Intune: A Microsoft cloud-based management solution that offers mobile device management, mobile application management, and PC management capabilities.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
370 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
174 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-03-17T14:41:51.2533333+00:00
berketjune2012 371 Reputation points
answered 2023-03-20T01:53:13.5+00:00
Andrew Blumhardt 9,831 Reputation points Microsoft Employee
1 answer

After activating trial of Microsoft Defender for Office 365

Hello. Please i need your help on this issue. Since we activated trial of Microsoft Defender for Office 365 (Plan 2) for our tenant we cannot open link in Teams desktop app on Windows server 2016 (Citrix). Could you please tell me where to turn off…

Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,250 questions
Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
174 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-02-16T14:39:30.67+00:00
Iniobong Nkanga 1,691 Reputation points
commented 2023-02-27T13:12:21.2233333+00:00
Givary-MSFT 30,176 Reputation points Microsoft Employee
1 answer

Window's Defender Blocking Steam Game

I'm an indie game dev with my first video game on Steam. I used RPG Maker MV to create it, and I'm getting feedback from some players that Windows Defender is IDing it as a "false positive" and deleting files making it unplayable. …

Windows 10
Windows 10
A Microsoft operating system that runs on personal computers and tablets.
11,046 questions
Windows 11
Windows 11
A Microsoft operating system designed for productivity, creativity, and ease of use.
8,758 questions
Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-02-24T19:48:55.0433333+00:00
AeroFunk80 0 Reputation points
answered 2023-02-24T23:02:26.4066667+00:00
Alan Farias 750 Reputation points
0 answers

microsoft laps 'Failed to load data. Please try again later.' error in microsoft 365 defender at secure score

Since a week or three I get an error in the microsoft secure score enviroment. 'Protect and manage local admin passwords with Microsoft LAPS' gives an error: failed to load data Please try again later. A week a three ago everything was working fine. I…

Microsoft Defender for Cloud Apps
Microsoft Defender for Cloud Apps
A Microsoft cloud access security broker that enables customers to control the access and use of software as a service apps in their organization.
118 questions
asked 2023-02-21T07:37:57.73+00:00
Microsoft 365 10 Reputation points