An organization uses Microsoft Defender for Identity. Which attack scenario does it specifically detect in an on-premises Active Directory environment?
-
A
OAuth consent phishing in Microsoft 365 apps
-
B
Pass-the-hash and pass-the-ticket lateral movement attacks
-
C
Malicious email attachments in Exchange Online
-
D
Insider threats via SharePoint file downloads