Enhancements to the Deep Analysis tab of Email Entity page by Microsoft Defender for Office 365

Microsoft Defender for Office 365 will enhance the Deep Analysis tab on the Email Entity page with a refreshed UI, improved detonation chains, expanded metadata, and detailed behavior insights. Rollout starts October 2025 (preview) and November 2025 (general availability). No user action or compliance impact expected. We’re excited to share recent enhancements to the Deep Analysis tab on the Email Entity page in Microsoft Defender for Office 365. These updates are designed to provide deeper insights and a more intuitive experience when investigating threats. When this will happen: Public Preview: We will begin rolling out early Oct 2025 and expect to complete by late Oct 2025. General Availability (Worldwide): We will begin rolling out early Nov 2025 and expect to complete by mid-Nov 2025. How this will affect your organization: There will not be any impact on the security investigation and hunting workflow. Post rollout, security teams will have deeper insights from the detonation outcomes to help them make more informed decisions. The enhancements will provide: A refreshed and streamlined user interface Improved detonation chain with nested entity details for better threat visibility Expanded URL and file metadata for better context More detailed and exportable behavior insights These improvements are designed to empower your security teams with richer, more actionable data to accelerate investigations and response. URL detonation details: Screenshot URL 1: View image in new tab Screenshot URL 2: View image in new tab Screenshot URL 3: View image in new tab File detonation details: Screenshot File 1: View image in new tab Screenshot File 2: View image in new tab Screenshot File 3: View image in new tab What you need to do to prepare: No action items needed from users or admin. Compliance considerations: No compliance considerations identified, review as appropriate for your organization. Message ID: MC1163754
The post Enhancements to the Deep Analysis tab of Email Entity page by Microsoft Defender for Office 365 appeared first on M365 Admin.
Published on:
Learn moreRelated posts
Upcoming Secure by Default Settings Changes for Exchange and Teams APIs
Starting late October to November 2025, Microsoft will require admin consent for third-party apps accessing Exchange and Teams content via Mic...
Microsoft 365 Copilot for Sales – Access insights on opportunity while working on emails in Outlook
We are announcing the ability to access insights on opportunity while working on emails in Outlook in Microsoft 365 Copilot for Sales. This fe...
Microsoft 365: Visual refresh of app icons
Microsoft 365 is rolling out refreshed app icons for Word, Excel, PowerPoint, and others starting October 2025. The visual update reflects a u...
New policy setting to require explicit consent for recording and transcription in Teams 1:1 calls
Microsoft Teams will require explicit consent before recording or transcribing 1:1 PSTN or VoIP calls, enhancing privacy and compliance. This ...
Improved device selection on Microsoft Teams meeting join screen
Microsoft Teams now allows users to select and change their microphone, speaker, or headset directly on the meeting join screen across desktop...
New support for HR and employee profile data in Microsoft 365 Copilot connectors
Microsoft 365 Copilot now supports HR and employee profile data via connectors like BambooHR and custom Microsoft Graph connectors, enhancing ...
Microsoft Exchange Online: New limit for dynamic distribution groups (DDGs) for Microsoft 365 operated by 21Vianet
Microsoft Exchange Online will limit each organization to 3,000 dynamic distribution groups (DDGs) starting November 2025. Once the limit is r...
Updates available for Microsoft 365 Apps for Current Channel
We’ve released updates to the following update channel for Microsoft 365 Apps: Current Channel When this will happen: We’ll be gra...
Teams Stamps External Users with Trust Indicators
Attackers might attempt to use social engineering to trick Teams users in compromise. Trusted indicators help users understand the status of e...