Rule Library
Sigma Rules
3 rules found for "Splunk Threat Research Team (original rule)"
3,731Total
3,132Detection
457Emerging
139Hunting
Detectionhightest
Disabling Multi Factor Authentication
Detects disabling of Multi Factor Authentication.
Microsoft 365audit
Splunk Threat Research Team (original rule)+1Mon Sep 18cloud
Detectionmediumtest
New Federated Domain Added
Detects the addition of a new Federated Domain.
Microsoft 365audit
Splunk Threat Research Team (original rule)+1Mon Sep 18cloud
Detectionmediumtest
New Federated Domain Added - Exchange
Detects the addition of a new Federated Domain.
Microsoft 365exchange
Splunk Threat Research Team (original rule)+1Tue Feb 08cloud