Top Domains Outbound with Emails with Threats Inbound (Partner BEC)

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Content Index


This query visualises top outbound recipient domains by outbound email volume and shows total number of inbound emails with Threats from the same domains (as inbound senders)

Attribute Value
Type Hunting Query
Solution GitHub Only
ID 195d52f8-7669-444a-9021-f30c140cb9ac
Tactics InitialAccess
Techniques T1566
Required Connectors MicrosoftThreatProtection
Source [View on GitHub](https://github.com/Azure/Azure-Sentinel/blob/master/Hunting Queries/Microsoft%20365%20Defender/Email%20and%20Collaboration%20Queries/Spoof%20and%20Impersonation/Top%20Domains%20with%20BEC%20Threats%20inbound.yaml)

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · Logic Apps · 📊

Back to Hunting Queries