Infosec.Pub
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
digicatM to blueteamsecEnglish · 5 months ago

Potential Actor Token Abuse in Entra ID KQL

github.com

external-link
message-square
0
link
fedilink
0
external-link

Potential Actor Token Abuse in Entra ID KQL

github.com

digicatM to blueteamsecEnglish · 5 months ago
message-square
0
link
fedilink
Threat-Hunting-and-Detection/Privilege Escalation/Potential Actor Token Abuse in Entra ID.md at main · Cyb3r-Monk/Threat-Hunting-and-Detection
github.com
external-link
Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language). - Cyb3r-Monk/Threat-Hunting-and-Detection
alert-triangle
You must log in or # to comment.

blueteamsec

blueteamsec

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !blueteamsec@infosec.pub

For [Blue|Purple] Teams in Cyber Defence - covering discovery, detection, response, threat intelligence, malware, offensive tradecraft and tooling, deception, reverse engineering etc.

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 7 users / day
  • 92 users / week
  • 290 users / month
  • 914 users / 6 months
  • 223 local subscribers
  • 623 subscribers
  • 2.36K Posts
  • 179 Comments
  • Modlog
  • mods:
  • digicat
  • BE: 0.19.13
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org