Failed logins from Russia - 178


Our Microsoft 365 has failed logins from Russia. What do we do? Time for a risk assessment. We’re going to make our 365 more secure.

Microsoft 365

  1. Error Codes - Lookup the error codes

  2. Security Defaults

DeepBlueCLI

  1. DeepBlueCLI - The GitHub site

  2. Webcast: Attack Tactics 7 – The Logs You Are Looking For - Covers DeepBlueCLI

  3. Log Analysis Part 2 – Detecting Host Attacks: Or, How I Found and Fell in Love with DeepBlueCLI - Good article

Sysmon

  1. Getting Started With Sysmon

Damien Hull