Microsoft Sentinel Blog

Options
9,780
robeving on Apr 26 2024 07:51 PM
2,205
Umesh_Nagdev on Apr 19 2024 07:55 AM
1,668
jeffsc on Apr 15 2024 11:17 AM
1,652
jeffsc on Apr 15 2024 11:17 AM
4,294
Preeti_Krishna on Mar 28 2024 02:56 PM
5,412
Matt_Lowe on Mar 14 2024 05:21 PM
3,810
Umesh_Nagdev on Feb 20 2024 07:04 AM
3,095
Josefa-Sepulveda on Feb 08 2024 07:58 AM
5,327
BenjiSec on Feb 06 2024 04:03 AM
4,535
PrateekTaneja on Feb 04 2024 10:22 PM
5,577
madesous on Jan 17 2024 05:27 AM
3,235
GBushey on Jan 16 2024 07:20 AM
3,526
VipulDabhi on Jan 08 2024 11:11 AM
6,279
timurengin on Jan 08 2024 11:10 AM
25.7K
Josefa-Sepulveda on Jan 02 2024 02:24 AM
48K
Arjun_Trivedi on Nov 29 2023 10:13 PM
9,988
skochavi on Nov 27 2023 01:21 PM
8,638
ShaharAviv on Nov 20 2023 10:27 PM
6,622
Eric Burkholder on Nov 15 2023 02:26 PM
61.9K
Erez Einav on Nov 15 2023 08:00 AM
5,485
mahmoudmsft on Nov 08 2023 10:02 AM
14.4K
Pete Bryan on Sep 21 2023 03:02 PM
16.1K
lili on Sep 05 2023 12:18 AM
7,057
Tiander Turpijn on Aug 30 2023 04:33 AM
19.3K
Jeremy Tan on Aug 23 2023 04:30 AM
7,639
Matt_Lowe on Aug 22 2023 09:30 AM
13.5K
Nicolas Lepagnez on Aug 09 2023 04:44 AM

Latest Comments

Now, playbooks can run on selected entity (specific threat actor). Using both automated response and actions on-demand helps to increase productivity: Full automation is the best solution for as many incident-handling, investigation, and mitigation tasks as you're comfortable automating.
0 Likes
Truly fascinating. Thank you for taking the time to explain what, how, and everything in between. So many forget about the smaller audience, like myself, who are learning (but, soaking it up like a sponge). Many thanks
0 Likes
Very insightful article about the cyber maturity Microsoft is running behind the scenes. It raises good awareness for the importance of monitoring tools on all web services that run public to the world. Also highlights the importance of governance throughout public service's lifetimes. It would be g...
0 Likes
@Matt_Lowe Is it possible to use this to prevent certain logs from being ingested? Xpath for DCR is not customization enough for us to drop certain logs. We are currently trying to drop certain WindowsEvent table logs(windows event forwarding). This certain event is very noisy and has no value. We c...
0 Likes
Hello, Very helpful blog thank you. I have a question though , is this way of automation is recommanded rather than using playbooks/logic apps to trigger the notebooks i need in the context of SOAR capabilities of sentinel ? like is it better ? if so how ?
0 Likes