MongoDB Atlas Solution: New Database Activity Monitoring with Administration API Integration

New MongoDB Atlas solution added providing database administration log ingestion via Function App for monitoring database operations, access patterns, and configuration changes. Read More →

Varonis SaaS Connector: Critical State Management Fix to Prevent Data Loss

Varonis SaaS connector updated with blob state persistence to track last alert ingest time and prevent potential data loss during connector restarts. Read More →

Lumen Threat Intelligence Solution: Comprehensive New Threat Feed Integration

Complete new solution with 10 analytic rules, hunting queries, workbook, and Azure Durable Function connector for Lumen threat intelligence integration. Read More →

Veeam Enterprise Solution: Major Enhancement with 137+ Detection Rules and Advanced Data Collection

Comprehensive Veeam solution update adds extensive security monitoring with 137+ new detection rules, enhanced function app data connector, and streamlined deployment. Read More →

Veeam Solution: Table Rename Fix for Microsoft Defender Portal Compatibility

Veeam solution updated with table rename from VeeamSession_CL to VeeamSessions_CL to ensure proper display in Microsoft Defender Portal. Read More →

Illumio Insights Enhanced: New Summary Connector and Improved Authentication

Illumio solution expands with new Insights Summary connector for compliance managers and threat hunters, plus improved API authentication structure. Read More →

Windows Audit Coverage Checker Workbook Added for Enhanced Security Visibility

New community workbook provides focused visibility tool for Windows Security auditing coverage assessment in Microsoft Sentinel deployments. Read More →

Dataminr Pulse: Azure Government Cloud Deployment Support Added

Dataminr Pulse connector adds Azure Government Cloud deployment button for government environments. Read More →

Contrast ADR Solution: Refined Alert Formatting and Detection Logic Updates

Six Contrast ADR analytic rules updated with improved alert descriptions and custom table schema changes for better incident clarity. Read More →

Check Point Cyberint IOC Connector: Table Name Fix Restores Data Ingestion

Fixed incorrect table reference (iocsent_CL) in Check Point Cyberint IOC connector that was preventing data ingestion. Read More →

SAP Agentless Solution: Safe Extraction Limit Added for Data Processing

SAP agentless integration package updated with safe limit parameter for extraction operations, enhancing data processing control. Read More →

Azure Security Benchmark Workbook: Network Map Component Removed Due to Repository Deprecation

Network mapping visualization removed from Azure Security Benchmark workbook following upstream repository deprecation. Read More →

Microsoft Defender XDR: Attack Simulator Training Playbook for Phishing Non-Reporters

New playbook automatically educates users who failed to report phishing emails by triggering Attack Simulator training simulations. Read More →

CMMC 2.0 Workbook: Network Map Component Removed Due to Deprecation

Cybersecurity Maturity Model workbook updated to remove deprecated network mapping functionality. Read More →

Microsoft Copilot Solution: New AI Security Monitoring with LLM Activity Telemetry

New Microsoft Copilot solution added providing AI-powered assistant usage monitoring and security telemetry through LLMActivity table ingestion via DCR framework. Read More →

GitHub Enterprise Audit Logs Connector: Critical Setup Instructions Updated

Labeled P0 — GitHub CCF connector setup instructions fixed to clarify API token scope requirements. Read More →

Jamf Protect: Enhanced Parsing for New macOS Security Events and Process Audit Fields

Jamf Protect parsers updated to support TCC modifications, network connections, and pseudoterminal events plus enhanced process audit tokens. Read More →

Snowflake Connector: Critical Data Fidelity and Reliability Improvements

Snowflake CCF connector fixed to prevent duplicate data ingestion, improve pagination handling, and reduce connection failures. Read More →

Threat Intelligence Workbook: Query Logic Fix for Indicator Visualization

Workbook query issue resolved in Threat Intelligence solution — improves analyst dashboard reliability. Read More →

NordPass Solution: Data Breach Scanner Detection Rules and Enhanced Connector Logic

Two new analytic rules detect domain and user data breaches on the dark web, with enhanced ingestion logic for NordPass Data Breach Scanner integration. Read More →