Пікірлер
@weslynmann9702
@weslynmann9702 Сағат бұрын
Thank you
@Cool_Demeanor
@Cool_Demeanor Ай бұрын
Thank you for such high-quality content-please keep making more videos like this!
@NotifySummit
@NotifySummit 3 ай бұрын
Anderson Laura Wilson Joseph Thompson Elizabeth
@JohnnyScott-s4h
@JohnnyScott-s4h 4 ай бұрын
165 Shakira Underpass
@shijin_suresh
@shijin_suresh 6 ай бұрын
Thanks.
@AsifShaik-zu3ip
@AsifShaik-zu3ip 6 ай бұрын
This Video is not clear,most of the are hidden
@Gopi.C
@Gopi.C 8 ай бұрын
Bro are you providing any training on Azure sentinel and kql
@plug-it
@plug-it 8 ай бұрын
I'm trying
@Gopi.C
@Gopi.C 8 ай бұрын
@@plug-it when you start please let me know bro.
@udaynalawade6281
@udaynalawade6281 9 ай бұрын
hello make some videos n malware (root cause) ,fishing male and unusual logins
@gupirqamil5333
@gupirqamil5333 9 ай бұрын
thanks for clear explanation. Any idea how to do it if an incident is unassigned for 3-4 minutes and post a message to the team group?
@plug-it
@plug-it 8 ай бұрын
In the logic app, your query needs to detect incidents unassigned older than a certain time, whatever result comes from that would be the incident number you need to have actioned by the logic app / playbook
@gupirqamil5333
@gupirqamil5333 8 ай бұрын
@@plug-it Thanks a lot for your reply. I have added a delay for the timing in the logic app, after that I used a query to check the unassigned incidents but it does not seem to work well. I'd appreciate if you could make a video to demonstrate or share the query.
@plug-it
@plug-it 8 ай бұрын
@@gupirqamil5333 I'll try
@GbengaAbraham-g3v
@GbengaAbraham-g3v 9 ай бұрын
Can you teach hands on labs for real life scenarios
@plug-it
@plug-it 8 ай бұрын
in time
@joe999-n2b
@joe999-n2b 10 ай бұрын
And these are all free yes?
@johnhack67
@johnhack67 11 ай бұрын
Thank you
@kayodenajeem1440
@kayodenajeem1440 Жыл бұрын
Thanks for the video man, I've got a quick question and i'll be happy if you can answer , What are the differences between DISTINCT and PROJECT. If you can make a short video Please. thank you so much . God bless.
@plug-it
@plug-it Жыл бұрын
distinct is to only show which values / columns there are. Project is to show the columns with their data
@thotakrishna262
@thotakrishna262 Жыл бұрын
Hey I have ip address so i need excat person details.. It's possible to you ??
@plug-it
@plug-it Жыл бұрын
anything is possible if you look hard enough
@shefalikumari3513
@shefalikumari3513 Жыл бұрын
Hi PLUG IT, thanks a ton for your initiative and making videos on KQL, I was really looking for some good content to learn KQL through videos from scratch. Please don't stop making videos on KQL as people like me need your assistance in learning KQL Better for sentinel.
@plug-it
@plug-it Жыл бұрын
Thank you so much for your feedback! I am happy to help in any way that I can! Never stop practicing!
@shefalikumari3513
@shefalikumari3513 Жыл бұрын
Thanks a ton for responding
@plug-it
@plug-it Жыл бұрын
@@shefalikumari3513 Only a pleasure, let me know if there is anything else I can help with!
@TenMinuteKQL
@TenMinuteKQL Жыл бұрын
Great session, thank you for sharing with the KQL learning community!
@plug-it
@plug-it Жыл бұрын
I'm happy to help! :)
@GOKU-nn4ed
@GOKU-nn4ed Жыл бұрын
bro can you creat how to create use cases using kql query
@plug-it
@plug-it Жыл бұрын
please elaborate on what you want bro
@GOKU-nn4ed
@GOKU-nn4ed Жыл бұрын
@@plug-it bro i want kql videos which can help me to build rule creation
@plug-it
@plug-it Жыл бұрын
@@GOKU-nn4ed In the upcoming weeks there will be more videos in this series regarding KQL. Keep watching bro
@GOKU-nn4ed
@GOKU-nn4ed Жыл бұрын
@@plug-it thats bro its much needed content
@Ichigobestmcoat
@Ichigobestmcoat Жыл бұрын
Hello what about Grabify ?
@plug-it
@plug-it Жыл бұрын
thanks for watching! Grabify is really cool, they have many great tools
@Ichigobestmcoat
@Ichigobestmcoat Жыл бұрын
@@plug-it Fr but I personally use IP logger because I put the name of the link *Map* and they allow the gps
@dead.oll_dead.oll_dead.oll_oll
@dead.oll_dead.oll_dead.oll_oll 10 ай бұрын
Yea it works to get the ip but it’s not always correct it is a cool way tho
@jamesknight0001
@jamesknight0001 Жыл бұрын
(dot)cum
@sourabhbdr7201
@sourabhbdr7201 Жыл бұрын
Can you please tell me how to get notification when a new incident generated??
@plug-it
@plug-it Жыл бұрын
Where would you like to be notified? Email? Teams?
@sourabhbdr7201
@sourabhbdr7201 Жыл бұрын
@@plug-it just like pop-up or mobile anything
@plug-it
@plug-it Жыл бұрын
@@sourabhbdr7201 check this out - kzbin.info/www/bejne/gZWceqOkibyBmrMsi=vDtwLY4eerwlBQK4
@TenMinuteKQL
@TenMinuteKQL Жыл бұрын
Great content and delivery, keep it up!
@gupirqamil5333
@gupirqamil5333 Жыл бұрын
Simple explanation. thank you
@haseebmohd6063
@haseebmohd6063 Жыл бұрын
Please upload videos to work on different types of incidents
@plug-it
@plug-it Жыл бұрын
that's the plan! watch this space!
@anandkeskar1992
@anandkeskar1992 Жыл бұрын
Thank you
@ThePACman69420
@ThePACman69420 Жыл бұрын
I am trying to create my first playbook in Sentinel but it does not seem to be running even tho notifications claims "Playbook was triggered successfully". Any recommendations on how to troubleshoot? Currently I am trying to add a comment to an incident when I run the playbook but nothing is happening.
@ThePACman69420
@ThePACman69420 Жыл бұрын
NVM the playbook was failing. You can see playbook run logs in the overview page for the logic app
@devforbeginers9776
@devforbeginers9776 2 жыл бұрын
Can you review IP Fighter?
@plug-it
@plug-it Жыл бұрын
Ok, I'll do that later
@suheelrm5096
@suheelrm5096 2 жыл бұрын
May creator of the universe bless you for this precious info. Thanks. Requesting for more content like this for different alerts
@plug-it
@plug-it Жыл бұрын
amiin!
@suheelrm5096
@suheelrm5096 Жыл бұрын
@@plug-it can we have a video on creating workbooks in sentinel for imperva waf related alerts?
@plug-it
@plug-it Жыл бұрын
@@suheelrm5096 There is an Imperva WAF Cloud workbook in the content hub
@plug-it
@plug-it Жыл бұрын
@@dindin7710 best to remove it asap!
@milagroslecuna
@milagroslecuna 2 жыл бұрын
Hi, what is your opinion about this IP Verifier?
@plug-it
@plug-it Жыл бұрын
which one?
@plug-it
@plug-it Жыл бұрын
@sammeditator what exactly about the location do you have? specifics
@avanigaddaeverest577
@avanigaddaeverest577 2 жыл бұрын
Bro please make video on investigation for ransomware attack,brute force attack,dos ddos attack please
@avanigaddaeverest577
@avanigaddaeverest577 2 жыл бұрын
Thank you so much bro for this video its very helpful for me...
@enockmukambo451
@enockmukambo451 2 жыл бұрын
Which site can I use to view the IP range of a domain. Most domains use dynamic IP's within a specific range. I want to find a way of getting the full range to so I add it to the whitelist on a firewall
@plug-it
@plug-it Жыл бұрын
If I understand your question correctly, then your best option would be burp suite, it would require some work though - portswigger.net/burp
@renatakarwowska1099
@renatakarwowska1099 2 жыл бұрын
If person knows your IP address do they can create any tracking or enter inside your phone so they can see where you are moving or what you have safe in your phone? Thanks Renata
@zyrexnotpyrex3205
@zyrexnotpyrex3205 2 жыл бұрын
They can't see what u have in your phone, but can track you aslong as you have Internet
@marcoamir5107
@marcoamir5107 Жыл бұрын
they can smoke u
@DaljeetSinghh
@DaljeetSinghh 2 жыл бұрын
Great content..👍
@DaljeetSinghh
@DaljeetSinghh 2 жыл бұрын
Interesting video, looking forward for more such content👍
@poppasensei2427
@poppasensei2427 2 жыл бұрын
I’m trying to create the map traffic view on my dashboard that will show the traffic as it moves back and forth, any links or ideas?
@plug-it
@plug-it 2 жыл бұрын
Hi there, could you please elaborate? Which traffic are you referring to? And which dashboard?
@stevenpearson1387
@stevenpearson1387 2 жыл бұрын
This was a simple, helpful, introduction. Just what I was looking for. Thanks!
@plug-it
@plug-it 2 жыл бұрын
Thank you! We are glad to have helped!
@rajbharath1871
@rajbharath1871 2 жыл бұрын
Thanks
@no-de3lg
@no-de3lg 2 жыл бұрын
I wanna get the scammer location he stole my mom gift cards i cant sleep
@plug-it
@plug-it 2 жыл бұрын
kzbin.info/www/bejne/gJibnn1uZtuega8&ab_channel=ScammerPayback
@A1servinem777
@A1servinem777 2 жыл бұрын
can you make a video going over the api permissions for the connection?
@plug-it
@plug-it 2 жыл бұрын
I will try!
@darrensmith5544
@darrensmith5544 2 жыл бұрын
You didnt select a playbook
@plug-it
@plug-it 2 жыл бұрын
Thanks, the playbook that I created was not visible at the time
@turningaround7842
@turningaround7842 Жыл бұрын
@@plug-it is it visible now :)
@RATANAGARWALITINFORMER
@RATANAGARWALITINFORMER 3 жыл бұрын
good
@AjayKumar-rz6hz
@AjayKumar-rz6hz 3 жыл бұрын
Hello @plug IT could you please let me know the above ask.
@AjayKumar-rz6hz
@AjayKumar-rz6hz 3 жыл бұрын
Hello Plug It, Thanks for this great vedio.Learning lot of things.. Just have a little doubt please help me on this Is it possible to get an email notifications when we close an azure sentinel incident. Please help me so that I can create my environment as shown in vedio. Thank you!!
@plug-it
@plug-it 3 жыл бұрын
Hey Ajay! apologies for the delay in response. The way that I can recommend is building a playbook that automatically closes the incident and thereafter an email step would be triggered to notify of the incident that was closed.========= Alternatively, what you could do, is create a separate analytic rule that performs a lookup on incidents that were closed, and then create an automation rule and playbook to send an email (notification) when the analytic rule is triggered. Hope this helps! thanks for watching!
@zitalouw25
@zitalouw25 3 жыл бұрын
Amazing, thanks so much! Super helpful.