Building a brute force detection rule in Microsoft Sentinel and working the resulting incident to closure using the NIST 800-61 lifecycle. KQL analytics rule, entity mapping, and NSG containment.
-
Updated
Jun 16, 2026
Building a brute force detection rule in Microsoft Sentinel and working the resulting incident to closure using the NIST 800-61 lifecycle. KQL analytics rule, entity mapping, and NSG containment.
Add a description, image, and links to the brute-force-de topic page so that developers can more easily learn about it.
To associate your repository with the brute-force-de topic, visit your repo's landing page and select "manage topics."