Forum Discussion
tyagia2ul
Aug 03, 2023Copper Contributor
How to get audit logs for Ransomware activity Policy under Threat Detection
I need to fetch the logs like who modified the policy is there any powershell command I can run
HeikeRitter
Aug 03, 2023Microsoft
Hello!! Could you please specify more what policy you are referring to? ASR rules? If so, you would need to check the audit logs in Intune.
- tyagia2ulAug 03, 2023Copper ContributorHello Heike,
We have a Threat Detection Policy under Cloud Apps in Microsoft 365 Defender and I need to pull the logs of that policy like when and who modified it last time .- HeikeRitterAug 03, 2023MicrosoftGot it, thanks for clarifying - let me check with the Defender for Cloud Apps team.
- tyagia2ulAug 04, 2023Copper ContributorHello Heike,
Just wondering if you have had a chance to check this with Cloud Apps team
Thanks
Atul