Posts for: #KQL

Leveraging AI for Effective Threat Hunting and Detections

Leveraging AI for Effective Threat Hunting and Detections
Many of us have been there: the daily threat feeds, threat exchange platforms, combing through lists of IOCs of varying difficult formats, even sometimes manually keying in from screenshots. All of this just to gather data to write threat hunting queries and detection rules. With AI, we can make our lives a little bit easier when it comes to basic hunting and detection, and even learn a few things in the process.
Read more →

Auditing Insecure MFA Methods Used in Microsoft Entra With Log Analytics

Auditing Insecure MFA Methods Used in Microsoft Entra With Log Analytics
As we all know, getting our organization onto Multi-factor authentication (MFA) is just the first step. The real challenge lies in moving to more secure second factors that can withstand increasingly sophisticated emerging threats. Unfortunately, industry support for moving to more advanced MFA methods is still not where it needs to be. But as security-minded individuals, we want to stay ahead of the curve and protect our users and environments from potential attacks.
Read more →