
FilterAdvanced
Lab: Placeholder
Lab Description
n hoursAzure CLI ยท Kusto Query Language +
- Collect incident artifacts from Azure Activity and Storage logs
- Replay the intrusion timeline entirely with KQL queries
- Deploy a Logic App playbook that locks compromised storage keys