I receive a High Severity alert which reads "Someone has extracted an unusual amount of potentially sensitive data from your SQL server xxxx".
Normally, the application executing the query returns a few rows but it is acceptable that the client requests a significant number of rows, which triggers this alert.
I cannot find this alert in https://github.com/MicrosoftDocs/azure-docs/blob/master/articles/security-center/alerts-reference.md
I wouldn't mind if this was a "low" or "moderate" alert which didn't frighten those who view it.
Is it possible to tweak something in the Advanced Threat Protection for SQL Server? Can this alert be removed?
THANKS!