Azure Hunting playbook
Deprecated. Use 'Office 365 and Azure Hunting' instead. This playbook enables you to collect and investigate suspicious security events from Azure AD environment.
- Pack
- MicrosoftPolicyAndCompliance
- Tasks
- 19
Commands used
- o365-auditlog-search