Update
The proactive user containment (contain user) action as part of the predictive shielding feature is now generally available.
Why it matters: Upcoming change
The proactive user containment (contain user) action as part of the predictive shielding feature is now generally available. This action infuses activity data with exposure data to identify exposed credentials at risk of being compromised and reused to conduct malicious activity.
Affected: Microsoft Defender XDR