↳ GitHub sourceWorkbook

Microsoft Defender For Office 365

Description

Gain insights into your Microsoft Defender for Office 365 raw data logs. This workbook lets you look at trends in email senders, attachments and embedded URL data to find anomalies. You can also search by, sender, recipient, subject, attachment or embedded URL to find where the related messages have been sent.
Version
1.0.0
Declared author / publisher
Microsoft Sentinel Community

Declared sources

Metadata from the source file. No dependencies inferred from KQL.

Data types

Source provenance

GitHub

Displayed values come from files in Azure/Azure-Sentinel. They describe the published template, not your workspace configuration.

Source identifier
MicrosoftDefenderForOffice365
Additional source files 2Workbooks/MicrosoftDefenderForOffice365.jsonsource ↗Workbooks/WorkbooksMetadata.jsonworkbook-metadata ↗
GSTEP / CATALOG TRACKING

Added to catalog : 16 Sept 2026 · 05:49 UTC
Last change observed : 16 Sept 2026 · 17:57 UTC

GSTEP sync dates, separate from the source content’s publication dates.