Skip to content

Conversation

@fgravato
Copy link

Adds 5 KQL queries for Lookout Mobile Risk API v2 integration with Azure Monitor:

  • High severity mobile threats - Detects critical/high severity threats with risk scoring
  • Smishing and phishing detection - SMS phishing alerts with impersonation analysis
  • Multi-vector attack correlation - Identifies coordinated attacks across threat types
  • Device compliance status - Monitors device security posture and MDM integration
  • Mobile threat summary - Overview dashboard of mobile security metrics

All queries follow the repository conventions with proper metadata headers (Author, Display name, Description, Categories, Resource types, Topic).

- High severity mobile threats detection
- Smishing and phishing detection with impersonation analysis
- Multi-vector attack correlation
- Device compliance status monitoring
- Mobile threat summary dashboard

Amp-Thread-ID: https://ampcode.com/threads/T-019bc77c-d2de-77cc-96ef-2907b63951e8
Co-authored-by: Amp <amp@ampcode.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant