Exploring enhanced features
For advanced users, there are additional features within MDE that can help you deal with more sophisticated threats within your environment. In this section, we’ll cover threat analytics, advanced hunting, custom detections, and reaching out to Defender Experts if you get stuck.
Threat analytics
Threat analytics is a threat intelligence feed, coming from Microsoft’s threat intelligence teams, that plugs directly into the MDE/M365D platform. This high-grade threat intelligence can be very useful for understanding current trending threats against your organization but is also just downright interesting to read.
The top page for threat analytics has cards breaking down the latest and highest impact threats in your organization by alert metrics (resolved versus active), and highest exposure threats by exposure level (low to high). Below the cards is a searchable list of threat intelligence entries and an overview of pertinent details:
...