Detect threats using GraphAPIAuditEvents - Part 3
Read OriginalThis technical article details the use of the new GraphAPIAuditEvents log source in Microsoft's XDR portal for security detection and hunting. It covers schema updates, compares it with other log sources, and provides a practical detection example using KQL queries to identify suspicious activity like AzureHound reconnaissance.
0 Kommentare
Kommentare
No comments yet
Be the first to share your thoughts!
Browser Extension
Get instant access to AllDevBlogs from your browser
Top of the Week
No top articles yet