#defenderforo365 search results
Working on KQL is FUN :) Created a query to get the user Identity information by Department/Teams/JobTitle. #KQL #DefenderForO365 #Office365Defender #DefenderforEndpoint #DATP #AzureSecurity #Azure #EDR #SIEM #KustoQuery #AAD #MSSecurity #SecurityInvestigation #LogAnalysis
Defender for O365 tables and schema is now available on Azure Sentinel. Now we can hunt email events from sentinel portal itself. #Sentinel #DefenderforO365 #AzureSecurity #SIEM #EmailSecurity #KQL #Kustoquery
OMG. #DefenderForO365, stop! Normal user emails and clean-up activities are generating MANY alerts. Unusual volume of file deletion = Someone removed an old 2019 folder they no longer want with 50 files in it; Phish delivered due to IP policy = False positive due to "spacer.png".
The attacker's activity visible to each #Microsoft365 #Defender products: #DefenderforO365 #DefenderforIoT #AzureIdentityProtection #DefenderforCloudApps #Defenderforcloud #Insiderriskmanagement #sentinel #defenderforendpoints #defenderforidentity #defenderforexternalattack #MS
Suspicious remoteurl and process hunting - #ThreatHunting #Hunting #DefenderforO365 #DefenderforEndpoint #WindowsDefender #AzureSentinel github.com/AdarshPandey-d…
Join my Session about #DefenderForO365 regarding #AdvancedHunting this Thursday at 16:00 meetup.com/de-DE/CloudWor…
Microsoft 365 Defender services: - Microsoft Defender for Endpoint - Microsoft Defender Vulnerability Management - Microsoft Defender for Office 365 - Microsoft Defender for Identity - Microsoft Defender for Cloud Apps #ms365defender #defenderforendpoint #defenderforo365
#Defenderforendpoints #Defenderforo365 #Defenderforidentity #Defenderforcloudapps #Defenderforcloud #Defenderforiot #Defender #sentinel #MicrosoftSecurity #infosec #Infosec2022 #infosecurity #cybersecuritytips
Supported remediation actions in MS 365 Defender: Endpoint - - Collect investigation package - Isolate device - Release from isolation - Offboard machine - Release code execution - Release from quarantine - Request sample - Restrict code execution (this action can be undone)
Advanced Hunting: Surfacing more email data from Microsoft Defender for Office 365: techcommunity.microsoft.com/t5/microsoft-3… #AdvancedHunting #DefenderForO365 #EmailSecurity #Phishing
One tool I see many companies with #Microsoft365 not utilizing enough for email troubleshooting is Threat Explorer. Such a powerful tool to have when investigating phishing, malware, and general email deliverability. #EOP #DefenderForO365 protection.office.com/threatexplorer
The attacker's activity visible to each #Microsoft365 #Defender products: #DefenderforO365 #DefenderforIoT #AzureIdentityProtection #DefenderforCloudApps #Defenderforcloud #Insiderriskmanagement #sentinel #defenderforendpoints #defenderforidentity #defenderforexternalattack #MS
Microsoft 365 Defender services: - Microsoft Defender for Endpoint - Microsoft Defender Vulnerability Management - Microsoft Defender for Office 365 - Microsoft Defender for Identity - Microsoft Defender for Cloud Apps #ms365defender #defenderforendpoint #defenderforo365
#Defenderforendpoints #Defenderforo365 #Defenderforidentity #Defenderforcloudapps #Defenderforcloud #Defenderforiot #Defender #sentinel #MicrosoftSecurity #infosec #Infosec2022 #infosecurity #cybersecuritytips
Supported remediation actions in MS 365 Defender: Endpoint - - Collect investigation package - Isolate device - Release from isolation - Offboard machine - Release code execution - Release from quarantine - Request sample - Restrict code execution (this action can be undone)
Join my Session about #DefenderForO365 regarding #AdvancedHunting this Thursday at 16:00 meetup.com/de-DE/CloudWor…
Defender for O365 tables and schema is now available on Azure Sentinel. Now we can hunt email events from sentinel portal itself. #Sentinel #DefenderforO365 #AzureSecurity #SIEM #EmailSecurity #KQL #Kustoquery
Suspicious remoteurl and process hunting - #ThreatHunting #Hunting #DefenderforO365 #DefenderforEndpoint #WindowsDefender #AzureSentinel github.com/AdarshPandey-d…
Advanced Hunting: Surfacing more email data from Microsoft Defender for Office 365: techcommunity.microsoft.com/t5/microsoft-3… #AdvancedHunting #DefenderForO365 #EmailSecurity #Phishing
Working on KQL is FUN :) Created a query to get the user Identity information by Department/Teams/JobTitle. #KQL #DefenderForO365 #Office365Defender #DefenderforEndpoint #DATP #AzureSecurity #Azure #EDR #SIEM #KustoQuery #AAD #MSSecurity #SecurityInvestigation #LogAnalysis
OMG. #DefenderForO365, stop! Normal user emails and clean-up activities are generating MANY alerts. Unusual volume of file deletion = Someone removed an old 2019 folder they no longer want with 50 files in it; Phish delivered due to IP policy = False positive due to "spacer.png".
One tool I see many companies with #Microsoft365 not utilizing enough for email troubleshooting is Threat Explorer. Such a powerful tool to have when investigating phishing, malware, and general email deliverability. #EOP #DefenderForO365 protection.office.com/threatexplorer
Working on KQL is FUN :) Created a query to get the user Identity information by Department/Teams/JobTitle. #KQL #DefenderForO365 #Office365Defender #DefenderforEndpoint #DATP #AzureSecurity #Azure #EDR #SIEM #KustoQuery #AAD #MSSecurity #SecurityInvestigation #LogAnalysis
Defender for O365 tables and schema is now available on Azure Sentinel. Now we can hunt email events from sentinel portal itself. #Sentinel #DefenderforO365 #AzureSecurity #SIEM #EmailSecurity #KQL #Kustoquery
The attacker's activity visible to each #Microsoft365 #Defender products: #DefenderforO365 #DefenderforIoT #AzureIdentityProtection #DefenderforCloudApps #Defenderforcloud #Insiderriskmanagement #sentinel #defenderforendpoints #defenderforidentity #defenderforexternalattack #MS
OMG. #DefenderForO365, stop! Normal user emails and clean-up activities are generating MANY alerts. Unusual volume of file deletion = Someone removed an old 2019 folder they no longer want with 50 files in it; Phish delivered due to IP policy = False positive due to "spacer.png".
Suspicious remoteurl and process hunting - #ThreatHunting #Hunting #DefenderforO365 #DefenderforEndpoint #WindowsDefender #AzureSentinel github.com/AdarshPandey-d…
Something went wrong.
Something went wrong.
United States Trends
- 1. Steelers 50.6K posts
- 2. Rodgers 20.7K posts
- 3. Chargers 34.4K posts
- 4. Tomlin 7,936 posts
- 5. Schumer 212K posts
- 6. #BoltUp 2,794 posts
- 7. #HereWeGo 5,579 posts
- 8. Keenan Allen 4,461 posts
- 9. Resign 99.4K posts
- 10. Tim Kaine 16.3K posts
- 11. #RHOP 6,661 posts
- 12. Herbert 11.2K posts
- 13. Durbin 23.3K posts
- 14. #ITWelcomeToDerry 4,092 posts
- 15. Ladd 4,274 posts
- 16. Angus King 13.7K posts
- 17. Jaylen Warren 1,874 posts
- 18. #snfonnbc N/A
- 19. Arthur Smith N/A
- 20. 8 Dems 6,143 posts