Anthropic_AI_Misuse_Report_IOCs - GTG-20006 - Russian espionage IOC matches
This rule detects activity matching known indicators of compromise (IOCs) associated with recent Russian espionage campaigns, including malicious domains, IP addresses, email senders, file names, and file hashes. It monitors network, sign-in, email, process, and file events across enterprise systems.
Microsoft Sentinel (KQL)

