Azure-Sentinel/Hunting Queries/SecurityEvent/uncommon_processes.yaml

4 строки
314 B
YAML

id: 667cc590-c81c-4592-8764-aaca9dad6cf4
name: Uncommon processes - bottom 5%
description: |
'As part of content migration, this file is moved to new location. you can find here: https://github.com/Azure/Azure-Sentinel/blob/master/Solutions/Windows%20Security%20Events/Hunting%20Queries/uncommon_processes.yaml'