<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.sitemaps.org/schemas/sitemap/0.9 http://www.sitemaps.org/schemas/sitemap/0.9/sitemap.xsd" xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
<url>
<loc>/posts/detect-suspicious-dns-requests/</loc>
<lastmod>2025-06-27T07:53:53+00:00</lastmod>
</url>
<url>
<loc>/posts/detection-of-malicious-outbound-connections-with-dns-mapping/</loc>
<lastmod>2025-06-05T11:51:21+00:00</lastmod>
</url>
<url>
<loc>/posts/retrieve-azure-vm-run-commands-via-defender-signals/</loc>
<lastmod>2025-06-16T18:31:15+00:00</lastmod>
</url>
<url>
<loc>/posts/edge-container-observability-using-inspektor-gadget/</loc>
<lastmod>2025-07-03T10:52:17+00:00</lastmod>
</url>
<url>
<loc>/posts/how-kubelet-uses-http-watch/</loc>
<lastmod>2025-07-12T19:40:33+00:00</lastmod>
</url>
<url>
<loc>/posts/ingestion-into-sentinel-via-event-hub-made-simple/</loc>
<lastmod>2025-07-18T12:32:02+00:00</lastmod>
</url>
<url>
<loc>/posts/konnectivity-evolution-from-tunnels-to-vnet-integration/</loc>
<lastmod>2025-08-12T09:45:39+00:00</lastmod>
</url>
<url>
<loc>/posts/hyper-v-vm-port-mirroring-made-simple/</loc>
<lastmod>2026-03-16T00:00:00+00:00</lastmod>
</url>
<url>
<loc>/categories/</loc>
<lastmod>2026-03-16T14:43:17+00:00</lastmod>
</url>
<url>
<loc>/tags/</loc>
<lastmod>2026-03-16T14:43:17+00:00</lastmod>
</url>
<url>
<loc>/archives/</loc>
<lastmod>2026-03-16T14:43:17+00:00</lastmod>
</url>
<url>
<loc>/about/</loc>
<lastmod>2026-03-16T14:43:17+00:00</lastmod>
</url>
<url>
<loc>/</loc>
</url>
<url>
<loc>/tags/sentinel/</loc>
</url>
<url>
<loc>/tags/dns/</loc>
</url>
<url>
<loc>/tags/summary-rules/</loc>
</url>
<url>
<loc>/tags/detection/</loc>
</url>
<url>
<loc>/tags/threat-intel/</loc>
</url>
<url>
<loc>/tags/cti/</loc>
</url>
<url>
<loc>/tags/networking/</loc>
</url>
<url>
<loc>/tags/hunting/</loc>
</url>
<url>
<loc>/tags/vnet/</loc>
</url>
<url>
<loc>/tags/azure/</loc>
</url>
<url>
<loc>/tags/serverless/</loc>
</url>
<url>
<loc>/tags/flow-logs/</loc>
</url>
<url>
<loc>/tags/aks/</loc>
</url>
<url>
<loc>/tags/defender/</loc>
</url>
<url>
<loc>/tags/runcommands/</loc>
</url>
<url>
<loc>/tags/kubernetes/</loc>
</url>
<url>
<loc>/tags/k8s/</loc>
</url>
<url>
<loc>/tags/observability/</loc>
</url>
<url>
<loc>/tags/container/</loc>
</url>
<url>
<loc>/tags/azure-arc/</loc>
</url>
<url>
<loc>/tags/aks-edge/</loc>
</url>
<url>
<loc>/tags/monitoring/</loc>
</url>
<url>
<loc>/tags/edge/</loc>
</url>
<url>
<loc>/tags/ebpf/</loc>
</url>
<url>
<loc>/tags/inspektor-gadget/</loc>
</url>
<url>
<loc>/tags/containerlogv2/</loc>
</url>
<url>
<loc>/tags/basics/</loc>
</url>
<url>
<loc>/tags/kubelet/</loc>
</url>
<url>
<loc>/tags/kube-api/</loc>
</url>
<url>
<loc>/tags/event-hub/</loc>
</url>
<url>
<loc>/tags/sentinel/</loc>
</url>
<url>
<loc>/tags/dcr/</loc>
</url>
<url>
<loc>/tags/azure-monitor/</loc>
</url>
<url>
<loc>/tags/log-analytics/</loc>
</url>
<url>
<loc>/tags/ingestion/</loc>
</url>
<url>
<loc>/tags/data-collection/</loc>
</url>
<url>
<loc>/tags/konnectivity/</loc>
</url>
<url>
<loc>/tags/security/</loc>
</url>
<url>
<loc>/tags/admission-webhooks/</loc>
</url>
<url>
<loc>/tags/control-plane/</loc>
</url>
<url>
<loc>/tags/hyper-v/</loc>
</url>
<url>
<loc>/tags/port-mirroring/</loc>
</url>
<url>
<loc>/tags/span/</loc>
</url>
<url>
<loc>/tags/wireshark/</loc>
</url>
<url>
<loc>/tags/capture/</loc>
</url>
<url>
<loc>/categories/blogging/</loc>
</url>
<url>
<loc>/categories/tutorial/</loc>
</url>
<url>
<loc>/categories/poc/</loc>
</url>
</urlset>
