Detection rules › By event

Microsoft-Windows-Security-Auditing Event ID 4771

6 detection rules reference this event. View event page.

Sigma (4)

Splunk (2)