SOC Daily Report : 03/27(Thu)
·
Security/Azure SOC
Case 1. (High)   Correlate Unfamiliar sign-in properties and atypical travel alertsThis alert indicates that unfamiliar sign-in properties and atypical travel patterns are correlated, suggesting potential security risks: Possible Legitimate User Activity The user logged in from a new device, browser, or network The user is using a VPN The user is traveling for work or personal reasons Case 2. (M..
SOC Daily Report : 03/25(Tue)
·
Security/Azure SOC
SharePointFileOperation via devices with previously unseen user agentsThis alert indicates that a file operation (upload, download, modification, etc.) in SharePoint was performed from a device using a previously unseen user agent (i.e., a browser or application that has not been recorded before). Meaning SharePointFileOperation: Any file activity within SharePoint (such as downloading, uploadin..