Detection rules › By event

Microsoft-Windows-Security-Auditing Event ID 5152

10 detection rules reference this event. View event page.

Elastic (1)

Splunk (1)

Kusto (8)