Mandiant Azure AD Investigator: PowerShell module for detecting artifacts

Mandiant Azure AD Investigator This repository contains a PowerShell module for detecting artifacts that may be indicators of UNC2452 and other threat actor activity. Some indicators are “high-fidelity” indicators of compromise, while other artifacts...