~/giac-geir · giac-geir_d1_9002417fd99f
giac-geir_d1_9002417fd99f domain/d1 · medium single

During an M365 investigation, a responder needs to detect suspicious user logon and email activity across Exchange and other hosted services. Which log source is described as the common method for this type of detection?

Unlock this exam to join the per-question discussion and vote on questions.

next question →