Detection rules › By event

Microsoft-Windows-Security-Auditing Event ID 4768

24 detection rules reference this event. View event page.

Sigma (10)

Elastic (1)

Splunk (11)

Kusto (2)