Skip to content

Commit 121a3e0

Browse files
committed
First draft
1 parent 1e3f62f commit 121a3e0

11 files changed

+618
-3
lines changed

articles/sentinel/TOC.yml

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -23,6 +23,10 @@
2323
href: tutorial-respond-threats-playbook.md
2424
- name: Automatically enrich incident information
2525
href: tutorial-enrich-ip-information.md
26+
- name: Detect Log4j vulnerability exploits
27+
href: tutorial-log4j-detection.md
28+
- name: Detect threats and produce enriched alerts
29+
href: tutorial-customize-analytics-rule-query.md
2630
- name: Get started with notebooks and MSTICPy
2731
href: notebook-get-started.md
2832
- name: Create a Power BI report from Microsoft Sentinel

articles/sentinel/detect-threats-custom.md

Lines changed: 2 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -2,10 +2,9 @@
22
title: Create custom analytics rules to detect threats with Microsoft Sentinel | Microsoft Docs
33
description: Learn how to create custom analytics rules to detect security threats with Microsoft Sentinel. Take advantage of event grouping, alert grouping, and alert enrichment, and understand AUTO DISABLED.
44
author: yelevin
5-
ms.topic: how-to
6-
ms.date: 01/30/2022
75
ms.author: yelevin
8-
ms.custom: ignite-fall-2021
6+
ms.topic: how-to
7+
ms.date: 01/08/2023
98
---
109

1110
# Create custom analytics rules to detect threats
42.1 KB
Loading
34.3 KB
Loading
128 KB
Loading
40.3 KB
Loading
70.2 KB
Loading
85.9 KB
Loading
29.5 KB
Loading

articles/sentinel/tutorial-customize-analytics-rule-query.md

Lines changed: 325 additions & 0 deletions
Large diffs are not rendered by default.

0 commit comments

Comments
 (0)