<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Azure Firewall on sentinelchangelog.net</title><link>http://sentinelchangelog.net/tags/azure-firewall/</link><description>Recent content in Azure Firewall on sentinelchangelog.net</description><generator>Hugo -- 0.157.0</generator><language>en</language><lastBuildDate>Wed, 06 May 2026 09:37:20 +0000</lastBuildDate><atom:link href="http://sentinelchangelog.net/tags/azure-firewall/index.xml" rel="self" type="application/rss+xml"/><item><title>Azure Firewall Detection Quality Overhaul: Enhanced Alert Context and Reduced Query Costs</title><link>http://sentinelchangelog.net/posts/2026-05-06-pr-13820/</link><pubDate>Wed, 06 May 2026 09:37:20 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-06-pr-13820/</guid><description>Comprehensive quality improvements to 11 Azure Firewall detections and 5 hunting queries add entity mappings, custom details, and query optimizations to reduce false positives and improve incident context.</description></item><item><title>Azure Firewall: Five New IDPS Analytic Rules for Advanced Threat Detection</title><link>http://sentinelchangelog.net/posts/2026-02-13-pr-13591/</link><pubDate>Fri, 13 Feb 2026 08:19:01 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-13-pr-13591/</guid><description>Azure Firewall solution expanded with 5 new analytic rules targeting high/medium severity threats, DDoS attacks, web application attacks, and privilege escalation attempts.</description></item><item><title>ASIM WebSession Parser: Fixed Broken Azure Firewall Template Reference</title><link>http://sentinelchangelog.net/posts/2025-12-10-pr-13275/</link><pubDate>Wed, 10 Dec 2025 10:05:08 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-12-10-pr-13275/</guid><description>Corrected case-sensitive path reference that was preventing Azure Firewall WebSession parser deployment.</description></item><item><title>Azure Firewall ASIM Parsers: Enhanced Detection Coverage for Six New Log Types</title><link>http://sentinelchangelog.net/posts/2025-12-05-pr-13181/</link><pubDate>Fri, 05 Dec 2025 18:08:03 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-12-05-pr-13181/</guid><description>New ASIM normalisation parsers added for six Azure Firewall log tables, expanding detection coverage for network sessions, DNS queries, and web traffic analysis.</description></item><item><title>VMware ESXi SSH Brute Force Detection Plus Multi-Solution Updates</title><link>http://sentinelchangelog.net/posts/2025-11-10-pr-13063/</link><pubDate>Mon, 10 Nov 2025 06:23:07 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-11-10-pr-13063/</guid><description>New VMware ESXi detection for multiple failed SSH login attempts, plus comprehensive solution updates across 15+ vendor solutions.</description></item><item><title>Azure Firewall Detection: Critical Time Range Fix Prevents Overlapping Alerts and Query Failures</title><link>http://sentinelchangelog.net/posts/2025-08-29-pr-12681/</link><pubDate>Fri, 29 Aug 2025 12:50:19 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-08-29-pr-12681/</guid><description>Azure Firewall Abnormal Port to Protocol rule updated to fix brittle time range handling that caused duplicate alerts and failed detection when runtime was modified.</description></item></channel></rss>