Getting Data In

User Account First Name Changed

Path Finder

Hi All,

One of the user account has been changed by someone and it got reflected in our Active Directory as well so we want to know who has changed it. 

Consider an example i.e. I am Anandh Alagarasan and my Firstname would be Anandh and Lastname would be Alagarasan.

So recently someone has updated my Firstname to Venkat. So in Active Directory when we checked the account i could see that my account is reflecting as Venkat Alagarasan.  So we want to know who had changed the FirstName of the user. Hence we want to know will it be captured in Wineventlogs ?

If yes, We want to find out who is the user who had changed the First name of the user account Anandh Alagarasan?


So kindly help to know how to pull the information using Search query.


Labels (1)
0 Karma

Path Finder

Can anyone kindly help on my query please.

0 Karma
Get Updates on the Splunk Community!

Improve Your Security Posture

Watch NowImprove Your Security PostureCustomers are at the center of everything we do at Splunk and security ...

Maximize the Value from Microsoft Defender with Splunk

 Watch NowJoin Splunk and Sens Consulting for this Security Edition Tech TalkWho should attend:  Security ...

This Week's Community Digest - Splunk Community Happenings [6.27.22]

Get the latest news and updates from the Splunk Community here! News From Splunk Answers ✍️ Splunk Answers is ...