Detection rules › By eventMicrosoft-Windows-Security-Auditing event 47032 detection rules reference this event. View event page.Elastic (1)SeDebugPrivilege Enabled by a Suspicious Process T1134 Splunk (1)Windows Access Token Manipulation SeDebugPrivilege T1134.002