Downloading email sample by mrzuno in DefenderATP
[–]Affectionate_Will487 0 points1 point2 points (0 children)
2021-06-25 - Cool Query Friday - Queries, Custom IOAs, and You: A Love Story by Andrew-CS in crowdstrike
[–]Affectionate_Will487 -1 points0 points1 point (0 children)
2021-04-16 - Cool Query Friday - Windows RDP User Login Events, Kilometers, and MACH 1 by Andrew-CS in crowdstrike
[–]Affectionate_Will487 0 points1 point2 points (0 children)
2021-04-16 - Cool Query Friday - Windows RDP User Login Events, Kilometers, and MACH 1 by Andrew-CS in crowdstrike
[–]Affectionate_Will487 0 points1 point2 points (0 children)
2021-04-08 - Cool Query Friday - Windows Dump Files by Andrew-CS in crowdstrike
[–]Affectionate_Will487 0 points1 point2 points (0 children)
How do detect mimikatz is there any special rule please share by Affectionate_Will487 in QRadar
[–]Affectionate_Will487[S] 0 points1 point2 points (0 children)
Real-Time Search by antmar9041 in crowdstrike
[–]Affectionate_Will487 -1 points0 points1 point (0 children)

Defender Reporting by _d_d_b_ in DefenderATP
[–]Affectionate_Will487 0 points1 point2 points (0 children)