Tagged: Azure Sentinel

Log4j INCIDENT RESPONSE with Microsoft Sentinel

Log4j INCIDENT RESPONSE

The following post will assist you with the Log4j incident response process based on the familiar tools, mitigate options, and the information from the vendors and community.

Introduction

On Dec. 9, 2021, a remote code execution (RCE) vulnerability in Apache … Read the rest

Pass the Cookie that Crumbles the Cloud

Do you like cookies? Everyone loves especially attackers and especially cloud-related cookies. If you have got multi-factor authentication (MFA) enabled on your account or are even passwordless in some situations, you can’t be compromised, correct? Think again. Well, not exactly. Read the rest

W3b^Pp$ec: Azure Sentinel LAB Series - SQLi

W3b^Pp$ec: Azure Sentinel LAB Series – SQLi

Managing comprehensive security products and security controls can be complicated, requiring a specific skill set and controlling all over the security process. In addition to managing complexity, monitoring the simulation activities, alerts, and results is reflected during the evaluation and … Read the rest

Att^ck & D3fend: MDE LAB Series

Att^ck & D3fend: MDE LAB Series – C0d3 eX3CuT!oN

Managing comprehensive security products and security controls can be complicated, requiring a specific skill set and controlling all over the security process. In addition to managing complexity is tracking where the simulation activities, alerts, and results are reflected during the … Read the rest