Jul 12 2023 10:56 AM
Hello,
I did some online search, but I couldn't find any working one yet.
I'm looking for query which I can use in Advance threat hunting in MDE to generate an alert when a user copies huge number of data to an external USB drive.
your help is much appreciated.
thanks.
Jul 12 2023 11:15 AM
Jul 12 2023 11:24 AM
Jul 12 2023 11:27 AM
Jul 12 2023 11:31 AM
Jul 12 2023 11:41 AM
Jul 12 2023 11:59 AM
Jul 12 2023 12:07 PM
Jul 12 2023 12:33 PM