ALERT: Password reuse activity - Behaviour

Sergy Lopez 161 Reputation points
2023-04-20T00:30:46.91+00:00

Hi Everyone.
Recently we receive a bunch of the next Alerts!: Password reuse activity that is triggered every 3 minutes on Microsoft 365 Defender.
The question here is, if anyone known the behavior or parameters that this alerts use to trigger the alert by default.

We analyze the entities that was envolved on this scenario, and all the applications are internal applications that present on it.

also we detect that only the entities that use Windows 11 are triggered but not the entities with Windows 10.

Kind of regards.

Microsoft 365 and Office | Install, redeem, activate | For business | Windows
Microsoft Security | Intune | Security
Microsoft Security | Microsoft Defender | Microsoft Defender for Cloud Apps
{count} votes

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.