Microsoft Azure KQL (Kusto Query Language) Demonstration
In this lab I demonstrate KQL language to query some security events in the log analytics workspace of my Azure environment.
Environments and Technologies Used
Microsoft Azure Cloud Platform
Microsoft Azure Virtual Machines
Kusto Query Language (KQL)
Log Analystics Workspace
Operating Systems Used
Windows 10 (21H2)
Video Demonstration
In the video below I demonstrate security event queries using the KQL language to show failed login attempts from various IP addresses to the VM I have set up in my Azure environment.