Closed lawndoc closed 1 year ago
This is an awesome thing to look for -- WSL is a total EDR blindspot. Great idea for the query!
If you can alter the query, so it also includes the OSPlatform, MachineGroup ExposureLevel and DeviceType then I will merge the pull request.
This is an awesome thing to look for -- WSL is a total EDR blindspot. Great idea for the query!