Detecting Azure Lateral Movement

Detect lateral movement in Azure AD/Entra ID environments using Microsoft Graph API audit logs, Azure Sentinel KQL hunting queries, and sign-in anomaly correlation to identify privilege escalation, token theft, and cross-tenant pivoting.

autohandai Updated

File contents

autohandai/community-skills/tree/main/detecting-azure-lateral-movement commit 26a1c345e4

Frequently asked questions

npx skillmds@latest add autohandai-community-skills/detecting-azure-lateral-movement