Azure-Sentinel/Hunting Queries/SecurityEvent/CustomUserList_FailedLogons...

5 строки
336 B
YAML

id: 55c47120-7050-466b-8fea-f27a5b50ab9f
name: VIP account more than 6 failed logons in 10
description: |
'As part of content migration, this file is moved to new location. you can find here: https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Windows%20Security%20Events/Hunting%20Queries/CustomUserList_FailedLogons.yaml'