HIPAA Compliance Solution: New Healthcare Privacy Monitoring Dashboard

New HIPAA Compliance solution adds comprehensive workbook for healthcare privacy monitoring and compliance tracking with bundled Microsoft 365 hunting queries. Read More →

Multi-Solution Update: Microsoft 365 Filters, GDPR Workbook Enhancements, and New BigID Solution

Major update spanning 15+ solutions adds Microsoft 365 filters, GDPR workbook improvements, new BigID DSPM solution, and Netskope v2 with comprehensive parsers. Read More →

Cisco Duo Security: ARM Template Correction Removes Incorrect Tomcat References

Cisco Duo Security solution v3.0.4 fixes ARM deployment templates that incorrectly contained Tomcat-specific configurations. Read More →

SailPoint IdentityNow Function App: Python 3.11 Upgrade and API Endpoint Updates

SailPoint IdentityNow connector upgraded to Python 3.11 runtime with updated API endpoints for Identity Security Cloud transition. Read More →

Contrast ADR Connector: Python Runtime Upgraded to 3.11

Python runtime upgrade from 3.9 to 3.11 for Contrast ADR Function App connector ensures continued security support. Read More →

Snowflake Parser: EventStartTime Field Mapping Fix and Version Update

Snowflake solution v3.0.5 corrects EventStartTime field mapping issue that was causing missing temporal data in normalized events. Read More →

Feedly Connector: Critical Migration from Deprecated API Prevents Complete Data Loss

Migration from deprecated HTTP Data Collector API to Log Ingestion API prevents Feedly threat intelligence blind spot. Read More →

BigID DSPM Solution: New CCF Connector for Data Security Posture Management

New BigID DSPM solution provides CCF connector for ingesting data security posture cases, affected objects, and datasource information into Microsoft Sentinel. Read More →

Palo Alto Prisma Cloud CSPM: Solution Graduates from Preview to General Availability

Palo Alto Prisma Cloud CSPM solution v3.0.3 moves to GA, removing preview tag and deprecated Function App connector in favor of CCF-only deployment. Read More →

VMRay: Updated Deployment URLs and Documentation for Threat Intelligence Connector

VMRay solution updated deployment URLs and documentation to use short links for better maintainability. Read More →

Sentinel CCF Packaging Tool: Adding JWT Token Authentication Support

CCF packaging tooling now supports JWT token authentication alongside existing methods for connector development. Read More →

AWS and VMware ESXi: Three New Analytic Rules for Execution, Exfiltration, and Lateral Movement

Three new Analytic Rules added across AWS CloudTrail and VMware ESXi — detecting EC2 startup script tampering (T1059), anonymous S3 object exfiltration (T1530), and SSH enablement on ESXi hosts (T1021). Read More →

GDPR Compliance Dashboard: New Workbook for Privacy Risk Monitoring

New GDPR Compliance solution adds workbook consolidating privacy risk signals from Defender XDR, Microsoft Purview, Azure SQL, and Entra ID. Read More →

New Cloudflare CCF Solution: Enterprise Log Visibility via Azure Blob Integration

New Cloudflare connector solution delivers comprehensive log ingestion through CCF blob integration for enhanced web traffic and security monitoring. Read More →

Multiple Solutions Added: Palo Alto aiohttp Update Plus New Obsidian and SAP S4 Connectors

Palo Alto Prisma Cloud dependency security update alongside new Obsidian Datasharing and SAP S4 Cloud Public Edition connector solutions. Read More →

Palo Alto Cortex Xpanse CCF Connector: GA Promotion Removes Preview Status

Palo Alto Cortex Xpanse CCF connector promoted from Preview to General Availability with version 3.0.1. Read More →

VirtualMetric DataStream: Solution ID Correction for Marketplace Deployment

Corrected solution identifier in VirtualMetric DataStream package to resolve Azure Marketplace deployment failures. Read More →

Team Cymru Scout: Playbook Bug Fix for Incident Enrichment Template

Fixed template error in TeamCymruScoutEnrichIncident playbook that was causing runtime failures. Read More →

SAP S/4HANA Cloud Public Edition: New CCF Connector for Security Audit Logs

New SAP S/4HANA Cloud Public Edition CCF connector enables ingestion of security audit logs into Microsoft Sentinel SAP solution. Read More →

Obsidian Datasharing: New Security Data Aggregation Solution

New connector solution for ingesting Obsidian platform security data into Microsoft Sentinel. Read More →