List Successful Sign-in From A New Country
Description This KQL query detects successful sign-ins from countries that have not been seen before. Depending on where you run
Read MoreWhere Every Failure Becomes A Manual
Description This KQL query detects successful sign-ins from countries that have not been seen before. Depending on where you run
Read MoreIn today’s digital age, children are growing up surrounded by technology, making online safety a crucial concern for parents and
Read MorePowerShell can be used encoded to obfuscate the commands that have been executed. An attacker can choose encoding to hide
Read MoreIn my last article, I delved into the benefits of starting a homelab, but now I want to get personal
Read MoreThis Threat Hunting case is based on the DeviceNetworkEvents table. The goal is to find malicious HTTP traffic. Step 1:
Read MoreIn a world where technology plays an increasingly central role in our lives, the idea of creating a homelab—a personalized
Read MoreGreetings, fellow tech aficionados and digital nomads! Today, I’m thrilled to dive into the electrifying world of homelabbing—a haven for
Read MoreDescription This KQL query identifies the users that are currently at risk. Based on that it performs a lookup on
Read MoreDescription This KQL query can be used to detect rare operating systems that are used to sign into your tenant.
Read More