SC-200 Respond to security incidents • Set 27
SC-200 Respond to security incidents Practice Test 27 — 15 questions with explanations. Free, no signup.
You are investigating a security incident in Microsoft Sentinel where a user reported receiving a phishing email with a malicious attachment. You need to identify all users who received the same email within the last 24 hours. Which KQL query should you use?