Alert Investigation for Microsoft Defender Suite
Incident Report for Red Canary
Resolved
This incident has been resolved. We've confirmed the issue was resolved by Microsoft.
Posted Jan 05, 2023 - 15:12 UTC
Monitoring
We have been in communication with our contacts at Microsoft and believe this issue has now been fixed on their end. We are continuing to monitor the incoming data but believe this incident has been resolved. We will post a final update here once we have further confirmation from Microsoft.
Posted Jan 05, 2023 - 04:13 UTC
Investigating
Red Canary is currently investigating a data discrepancy between the Microsoft Defender Suite Graph API and the Microsoft Defender Console which is preventing Red Canary from receiving complete contextual alert data. During this time some impacted alerts may require customer investigation or result in delayed detections.
Posted Jan 04, 2023 - 01:00 UTC
This incident affected: Alert Ingestion and Correlation (Microsoft) and Detections.