Tagged: Microsoft Sentinel
Okta breach learned is that any vendor can be breached sooner or later. No one is immune. Okta is one of the stable vendors that we know cuz the Okta history was pretty good. This blog post will take you … Read the rest
This blog-post it’s all about Hunting BitLocker with Microsoft Sentinel. Is the cloud is more secure than the on-prem environment? It depends on many situations. If you don’t know how to manage the security control on the cloud, you will … Read the rest
Managing comprehensive security products and controls can be complicated, requiring a specific skill set and control over the security process. In addition to managing complexity, monitoring the simulation activities, alerts, and results is reflected during the evaluation and testing.
The … Read the rest
More and more organizations fail to apply cloud security controls and recommendations, even the essential stuff, such as Posture Management. While security incidents occur constantly, one common scenario is the issue with VM/EC2 open ports to the public network.
You … Read the rest
The following post will assist you with the Log4j incident response process based on the familiar tools, mitigate options, and the information from the vendors and community.
Introduction
On Dec. 9, 2021, a remote code execution (RCE) vulnerability in Apache … Read the rest
This short blog post will guide how to Hunting Log4j with Microsoft Sentinel.
On Dec. 9, 2021, a remote code execution (RCE) vulnerability in Apache log4j 2 was identified as being exploited in the wild. PoC code was released, and … Read the rest
In Azure, like any other cloud vendor, the shared responsibility model means that both Microsoft and you have a role to play in ensuring high service availability.
Suppose we’re taking the identity platform (the Azure AD). In that case, It’s … Read the rest