Disclaimer: The information posted in this blog and on this website are not necessarily reflective of the views or recommendations of Microsoft. Though I am an employee of Microsoft, this is considered a personal project of mine that is not intended to be a recommendation or guide from Microsoft the company. Introduction In this blog postContinue reading “Creating Custom Email Reports with Advanced Hunting and Power Automate”
Tag Archives: advanced hunting
Advanced Hunting with the M365 Defender API
This blog describes how to use the Microsoft 365 Defender API to programmatically run advanced hunting queries in PowerShell and includes working code. The Microsoft 365 Defender API can be confusing to many people and creating a script such as the one described in this blog is often difficult to do without a proper understandingContinue reading “Advanced Hunting with the M365 Defender API”
5 Powerful Advanced Hunting Queries
Advanced Hunting is a powerful, query-based, threat-hunting tool included in the Microsoft 365 Defender platform. When utilized properly, advanced hunting can uncover initial access of a threat actor, lateral movement, exfiltration, insider threats, and so much more. In this post, I will be going through Microsoft’s Community GitHub repo containing advanced hunting queries and showingContinue reading “5 Powerful Advanced Hunting Queries”