Yet Another Security Blog

Another blog to help expand Security Knowledge

  • Home
  • Disclaimer
  • LinkedIn
  • Twitter
  • Email

Month: December 2023

How to get a single row from a Microsoft Sentinel watchlist quickly

Posted on December 27, 2023January 19, 2024

Introduction 19 Jan 2024 UPDATE: I have posted this same information (not quite as detailed) in the Microsoft Sentinel blog at Querying Watchlists – Microsoft Community Hub however, it does have a section on “bag_unpack” and the best way to use it. As I am sure you already know, you can get the entries from […]

Continue Reading
Posted in UncategorizedLeave a Comment on How to get a single row from a Microsoft Sentinel watchlist quickly

Recent Posts

  • Using PowerShell with Microsoft Graph
  • Microsoft Sentinel REST APIs vs MS Graph
  • Introduction to DevSecOps
  • Create multiple rules from rule templates using a UI
  • Changing directions

Archives

  • January 2025
  • November 2024
  • February 2024
  • December 2023
  • November 2023
  • October 2023
  • July 2023
  • April 2023
  • March 2023
  • February 2023
  • January 2023
  • December 2022
  • October 2022
  • September 2022
  • August 2022
  • July 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • May 2021
  • February 2021
  • January 2021
  • November 2020
  • June 2020
  • May 2020
  • April 2020
  • March 2020
  • February 2020
  • January 2020

Categories

  • Azure
  • Hunting
  • KQL
  • Programming
  • Queries
  • Reports
  • Sentinel
  • Uncategorized
WordPress Theme: BlogGem by TwoPoints.