Missing KBs with Advanced Hunting

New Contributor

Hello Team, I am looking to use Advanced Hunting to get list of Missing KBs on a Device(s).

Need similar info provided by this API, https://docs.microsoft.com/en-us/windows/security/threat-protection/microsoft-defender-atp/get-missi....

 

Also, I am able to use DeviceTvmSoftwareInventoryVulnerabilities table, But it provides list of all CVEs rather than just the name of missing KB/Patch.

 

Any leads would be appreciated :)

1 Reply

@sagarsetia2225 Looking for the same thing too. Occasionally an update will get stuck and requires a reboot and some troubleshooting to get it back, but I haven't found any way yet to find out which systems those are, except that there's a loose correlation between the Health Status != "Active" & Last Seen is not updated, and yet the system is still on the network.