You have a Microsoft Sentinel workspace that contains the following incident.
Brute force attack against Azure Portal analytics rule has been triggered.
You need to identify the geolocation information that corresponds to the incident.
What should you do?
Potential malicious events: When traffic is detected from sources that are known to be malicious, Microsoft Sentinel alerts you on the map. If you see orange, it is inbound traffic: someone is trying to access your organization from a known malicious IP address. If you see Outbound (red) activity, it means that data from your network is being streamed out of your organization to a known malicious IP address.
Pedro
10 months agoDeeanna
10 months agoShawn
10 months agoCandra
10 months agoGlory
10 months agoJohna
11 months agoMindy
11 months agoPaulene
11 months agoAlyce
11 months agoFidelia
11 months agoTracey
11 months agoRicarda
11 months agoAvery
11 months ago