You have an Azure subscription that contains a virtual machine named VM1 and uses Azure Defender. Azure Defender has automatic provisioning enabled.
You need to create a custom alert suppression rule that will supress false positive alerts for suspicious use of PowerShell on VM1.
What should you do first?
Lion007
Highly Voted 2 years, 12 months agoGurulee
1 year, 8 months agoMthaher
Highly Voted 3 years, 1 month agochepeerick
Most Recent 1 year, 8 months agomali1969
1 year, 10 months agomimguy
1 year, 11 months agoimhere4you
2 years ago[Removed]
2 years, 4 months agojrjrjrchlv
2 years, 5 months agoLone__Wolf
2 years, 4 months agoFukacz
2 years, 9 months agosainfosec
2 years, 10 months agovnez
2 years, 10 months agoCatoFong
2 years, 11 months agosadako
3 years, 2 months agoj888
3 years, 1 month ago