SC-200 Perform threat hunting • Set 2
SC-200 Perform threat hunting Practice Test 2 — 15 questions with explanations. Free, no signup.
Your threat hunt aims to detect possible Kerberoasting attacks. Which KQL query in Microsoft Sentinel would best identify service principal name (SPN) requests from unusual accounts?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.