Anything About IT

Learning, Building, Sharing

Hunting for Local Group Membership changes

Detect changes to the local administrator group using Microsoft Defender ATP advanced hunting.

Generating Advanced hunting queries with PowerShell

Writing advanced hunting queries for Microsoft Defender ATP to search for execution of specific PowerShell commands.

Defender ATP Advanced hunting with TI from URLhaus

How to use Threat Intelligence (TI) data from URLhaus with Microsoft Defender ATP.

Managing Time Zone and Date formats in Microsoft Defender Security Center

When you receive security alerts or investigate security events, the aspect of time is an important element.

Advance your Microsoft Defender ATP hunting skills using the Atomic execution framework

Advance my hunting skills using MITRE ATT&CK and Microsoft Defender Advanced Threat Protection.

Meet the new Microsoft Defender ATP evaluation lab

Announced public preview of the new Microsoft Defender ATP evaluation lab.