Threat Management

Microsoft Defender threat intel library updated with new capabilities

Microsoft has updated its Defender Threat Intelligence database with file hash and URL search capabilities as part of an effort to consolidate various streams of threat intelligence data, according to The Register. Such search capability improvements enable Microsoft Defender TI to yield any threat intelligence or data analysis on the intelligence from file hash or URL inputs under the Summary tab, which also details key details and the reputation score of the document, while more insights regarding the document could be gleaned from Defender TI's Data tab. "This provides a straightforward way to obtain insights about the file hash or URL and any associated links to intelligence articles where the file hash or URL has been listed as an Indicator of Compromise. With this information, security professionals can better understand potential threats and take appropriate action to protect their organization," noted Microsoft Senior Program Manager Dennis Mercer, who also touted Defender TI's use of static and dynamic file and URL analysis within and outside Microsoft's environment.

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms and Conditions and Privacy Policy.