Tutorial 5
- Ingestion into Sentinel via Event Hub made simple
- Enhancing Edge Container Observability with Inspektor Gadget and Sentinel (PoC)
- Retrieve Azure VM Run Commands through Defender AH tables (PoC)
- VNet Flow Logs - Detection of Malicious Outbound Connections with DNS Mapping
- Detect suspicious DNS requests using Azure DNS Security Policy and Sentinel Summary Rules