Skip to main content
Run any Skill in Manus
with one click

analyzing-azure-activity-logs-for-threats

Queries Azure Monitor activity logs and sign-in logs via azure-monitor-query to detect suspicious administrative operations, impossible travel, privilege escalation, and resource modifications. Builds KQL queries for threat hunting in Azure environments. Use when investigating suspicious Azure tenant activity or building cloud SIEM detections.

Stars15,980
Forks1,946
UpdatedJune 1, 2026 at 10:13
File Explorer
4 files
SKILL.md
readonly