List Automatically Closed Incidents
Description This KQL query lists the incidents that are automatically closed by Microsoft Defender XDR. It is good practice to
Read MoreWhere Every Failure Becomes A Manual
Description This KQL query lists the incidents that are automatically closed by Microsoft Defender XDR. It is good practice to
Read MoreSo, you’re finally convinced to scratch the itch and turn that old laptop into something more than just a coffee
Read MoreDescription This KQL query detects successful sign-ins from countries that have not been seen before. Depending on where you run
Read MoreIn today’s digital age, children are growing up surrounded by technology, making online safety a crucial concern for parents and
Read MorePowerShell can be used encoded to obfuscate the commands that have been executed. An attacker can choose encoding to hide
Read MoreIn my last article, I delved into the benefits of starting a homelab, but now I want to get personal
Read MoreThis Threat Hunting case is based on the DeviceNetworkEvents table. The goal is to find malicious HTTP traffic. Step 1:
Read MoreIn a world where technology plays an increasingly central role in our lives, the idea of creating a homelab—a personalized
Read MoreGreetings, fellow tech aficionados and digital nomads! Today, I’m thrilled to dive into the electrifying world of homelabbing—a haven for
Read More