Tagged: Microsoft Sentinel

WebAppSec - SQLi - Microsoft Sentinel LAB Series

Simulate SQLi – Microsoft Sentinel LAB Series

Managing comprehensive security products and controls can be complicated, requiring a specific skill set and control over the security process. In addition to managing complexity, monitoring the simulation activities, alerts, and results is reflected during the evaluation and testing.

The … Read the rest

Microsoft Sneintle SSH BF

The Reality of SSH Brute-Force in Azure Linux VM

More and more organizations fail to apply cloud security controls and recommendations, even the essential stuff, such as Posture Management. While security incidents occur constantly, one common scenario is the issue with VM/EC2 open ports to the public network.

You … Read the rest

Log4j INCIDENT RESPONSE with Microsoft Sentinel

Log4j INCIDENT RESPONSE

The following post will assist you with the Log4j incident response process based on the familiar tools, mitigate options, and the information from the vendors and community.

Introduction

On Dec. 9, 2021, a remote code execution (RCE) vulnerability in Apache … Read the rest