Category: Azure Sentinel

Legacy & Cloud-Native SIEM

Sentinel. Sentry a defender always on the guard who aims to protect and withstand threats, anticipate any attack, assume that it will arrive, and adjust the behavior accordingly. Be present to protect the assets and the area.

This blog post … Read the rest

Log4j INCIDENT RESPONSE with Microsoft Sentinel

Log4j INCIDENT RESPONSE

The following post will assist you with the Log4j incident response process based on the familiar tools, mitigate options, and the information from the vendors and community.

Introduction

On Dec. 9, 2021, a remote code execution (RCE) vulnerability in Apache … Read the rest

Pass the Cookie that Crumbles the Cloud

Do you like cookies? Everyone loves especially attackers and especially cloud-related cookies. If you have got multi-factor authentication (MFA) enabled on your account or are even passwordless in some situations, you can’t be compromised, correct? Think again. Well, not exactly. Read the rest