how to export scan data and xml report of an asset that has been detected for being vulnerable by MS Defender

Saborni Barua 0 Reputation points
2024-12-12T12:51:28.27+00:00

Hello

I am trying to figure out how to generate scan data and XML report of an asset that has been detected for vulnerability for a specific CVE on defender XDR. I am trying to provide this information to the Rapid7 team as the vulnerability report they have generated has missed this vulnerability which Defender has detected.So, the Rapid7 team has asked us to give these information so they can cross check the information of the detection made by MS defender on their check logic.

would be really thankful if anyone can provide any sort of solution. Cheers,

Microsoft Defender for Identity
Microsoft Defender for Identity
A Microsoft service that helps protect enterprise hybrid environments from multiple types of advanced, targeted cyberattacks and insider threats.
231 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Prathista Ilango 170 Reputation points Microsoft Employee
    2025-01-03T07:59:00.8933333+00:00

    Hello @Saborni Barua ,

    From my understanding, you are looking for the detection logic for vulnerabilities used by Defender. Please refer to the below article to get the detection logic of a vulnerability:  

    Vulnerabilities in my organization - Microsoft Defender Vulnerability Management | Microsoft Learn

    If you found the information above helpful, please Click Yes. This will assist others in the community who encounter a similar issue, enabling them to quickly find the solution and benefit from the guidance provided.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.