Skip to content
  • Home
  • LinkedIn
PotSolutions
  • Home
  • LinkedIn

Posts in January 27, 2024

by jpot
January 27, 2024

Microsoft Sentinel: Malicious Inbox Rule V2

This improved Sentinel Analytics Rule can be used to detect malicious Inbox Rules used by threat actors to hide invoice fraud activity. I've used the Inbox rule currently available as a template within Sentinel, and modified it to alert on Outlook rules I encountered in the wild.
0
read more

Recent Posts

  • The G-Door: Microsoft 365 & the risk of unmanaged Google Doc accounts
  • Automating Azure SQL Maintenance with Azure Automation
  • Malware Analysis – Shortcuts in zip file
  • Identifying Duplicate Files Across All SharePoint Sites Using PowerShell
  • How to Guard Against Token Theft for Microsoft 365

Recent Comments

  1. Marie Darr on Microsoft Sentinel: Malicious Inbox Rule V2
  2. prof-it on Microsoft Sentinel: Malicious Inbox Rule V2
  3. Teresa Butler on Microsoft Sentinel: Malicious Inbox Rule V2
  4. prof-it on Microsoft Sentinel: Malicious Inbox Rule V2
  5. Mike Bianco on Microsoft Sentinel: Malicious Inbox Rule V2
© 2025 PotSolutions.