Azure AD Graph Activity Logs: Ingestion and threat detection to close the visibility gap
CYBERSECURITY FEATURED ANALYSIS

Azure AD Graph Activity Logs: Ingestion and threat detection to close the visibility gap

SOURCE

Elastic Security Labs

DATE

READ

1 min read

Azure AD Graph Activity Logs land in Elastic with full ECS parsing. Detect ROADrecon and AADInternals enumeration with ready-to-use detection rules.

Azure AD Graph Activity Logs land in Elastic with full ECS parsing. Detect ROADrecon and AADInternals enumeration with ready-to-use detection rules.