Log Monitoring [CHK-1111]
Log Monitoring is a feature within Attic's Login Protection suite that continuously monitors your Microsoft 365 environment for suspicious login attempts and potential phishing attacks.
Rationale
Phishing attacks are becoming increasingly sophisticated, and traditional security measures may not catch all malicious login attempts. Log Monitoring provides an additional layer of protection by analyzing patterns and comparing them against known attack signatures.
Fix
An automated fix is available through Attic. This fix does not rely on permissions in your Microsoft environment because the configuration is fully managed within the Attic system. It will therefore be offered regardless of your onboarding type in the Microsoft environment.
Manual steps: Contact your Attic operator to enable the Log Monitoring feature for your environment.
Impact
Enabling Log Monitoring helps identify compromised accounts, suspicious locations, and possible attempts to steal credentials before they can cause significant harm to your organization.