Detecting Entra Offensive Tools In Graph Logs

Hunt AADGraphActivityLogs and MicrosoftGraphActivityLogs in Microsoft Sentinel/Log Analytics for fingerprints of offensive Entra ID tools such as ROADtools, AADInternals, and AzureHound.

peteedoo Updated 0 repo stars

File contents

peteedoo/project-template/tree/main/.agents/skills/imported/mukul975--anthropic-cybersecurity-skills/detecting-entra-offensive-tools-in-graph-logs commit 5560c2135d

Frequently asked questions

npx skillmds@latest add peteedoo/detecting-entra-offensive-tools-in-graph-logs-2