<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Function App on sentinelchangelog.net</title><link>http://sentinelchangelog.net/tags/function-app/</link><description>Recent content in Function App on sentinelchangelog.net</description><generator>Hugo -- 0.157.0</generator><language>en</language><lastBuildDate>Mon, 25 May 2026 06:58:27 +0000</lastBuildDate><atom:link href="http://sentinelchangelog.net/tags/function-app/index.xml" rel="self" type="application/rss+xml"/><item><title>Fortinet FortiGate Playbook: Function App Authentication Security Hardening</title><link>http://sentinelchangelog.net/posts/2026-05-25-pr-14316/</link><pubDate>Mon, 25 May 2026 06:58:27 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-25-pr-14316/</guid><description>Playbook Function App authentication level upgraded from anonymous to function-level to close security exposure.</description></item><item><title>XBOW: API Version 2026-04-01 Upgrade Enriches Assessment Data with Attack Credits and Events</title><link>http://sentinelchangelog.net/posts/2026-05-20-pr-14145/</link><pubDate>Wed, 20 May 2026 06:13:05 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-20-pr-14145/</guid><description>XBOW connector upgrades to latest API version, adding attack credits tracking and recent event details to assessment ingestion for improved offensive security visibility.</description></item><item><title>ESET PROTECT Platform: Delta Token Migration Eliminates Data Gaps from Timestamp Filtering</title><link>http://sentinelchangelog.net/posts/2026-05-20-pr-14149/</link><pubDate>Wed, 20 May 2026 06:12:29 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-20-pr-14149/</guid><description>ESET connector switches from unreliable timestamp filtering to delta tokens, closing potential data loss gaps during high-volume ingestion periods.</description></item><item><title>Function App Security: Access Control Hardening Across Multiple Data Connectors</title><link>http://sentinelchangelog.net/posts/2026-05-18-pr-14284/</link><pubDate>Mon, 18 May 2026 10:00:54 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-18-pr-14284/</guid><description>Function keys now required for HTTP-triggered functions in Zoom, Zscaler, FortiGate, Cofense, Illumio, and Infoblox connectors—removing anonymous access vulnerability.</description></item><item><title>Cyjax Connector: Security and Code Quality Fixes Applied</title><link>http://sentinelchangelog.net/posts/2026-05-07-pr-14193/</link><pubDate>Thu, 07 May 2026 07:12:52 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-07-pr-14193/</guid><description>Addressed lint issues, package vulnerabilities, and code vulnerabilities in Cyjax threat intelligence connector.</description></item><item><title>Cisco Duo Connector: API Throttling Resilience Improved for Log Ingestion</title><link>http://sentinelchangelog.net/posts/2026-05-07-pr-14204/</link><pubDate>Thu, 07 May 2026 04:48:36 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-07-pr-14204/</guid><description>Doubled retry delay to 120 seconds to address Duo API throttling requirements preventing log collection.</description></item><item><title>GitHub Advanced Security Parser Migration: CLv2 Compatibility and Schema Updates</title><link>http://sentinelchangelog.net/posts/2026-05-06-pr-14209/</link><pubDate>Wed, 06 May 2026 09:39:18 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-06-pr-14209/</guid><description>Critical fix migrates GitHub parsers and workbooks to support CLv2 ingestion table and updated GitHub alert event schemas, ensuring compatibility across V1 and V2 deployments.</description></item><item><title>BloodHound Enterprise: Function App Upgrade Fixes Data Collection and Ingestion Gaps</title><link>http://sentinelchangelog.net/posts/2026-05-06-pr-13922/</link><pubDate>Wed, 06 May 2026 04:43:25 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-06-pr-13922/</guid><description>Deployment source moved to stable Microsoft repo, custom table schemas fixed, and Function App ingestion enhanced for reliable attack path visibility.</description></item><item><title>Joe Sandbox Solution: ARM Template Fixes and IOC Handling Improvements</title><link>http://sentinelchangelog.net/posts/2026-05-04-pr-14130/</link><pubDate>Mon, 04 May 2026 12:39:49 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-04-pr-14130/</guid><description>Joe Sandbox solution updated to v3.0.1 with Azure template fixes, updated storage API versions, and improved IOC processing in playbooks.</description></item><item><title>CrowdStrike Falcon Data Replicator: Incorrect Deprecation Reversed, Connector Restored to Active Status</title><link>http://sentinelchangelog.net/posts/2026-05-01-pr-14174/</link><pubDate>Fri, 01 May 2026 16:31:36 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-01-pr-14174/</guid><description>CrowdStrike&amp;rsquo;s Function App-based data replicator was incorrectly deprecated and has been restored to active status to maintain government deployment support.</description></item><item><title>Upwind Connector: Function App Deployment Fixed After Broken Code Deployment</title><link>http://sentinelchangelog.net/posts/2026-05-01-pr-14158/</link><pubDate>Fri, 01 May 2026 06:48:48 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-01-pr-14158/</guid><description>Upwind connector Function App deployment was failing due to incorrect zip structure and ARM template configuration - fixed with flat zip layout and implicit hosting plan.</description></item><item><title>GreyNoise Threat Intelligence: Packaging Fixes and Security Improvements</title><link>http://sentinelchangelog.net/posts/2026-04-30-pr-14032/</link><pubDate>Thu, 30 Apr 2026 11:13:54 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-30-pr-14032/</guid><description>Fixed Function App deployment packaging errors and improved security by converting ARM template secrets to secure strings.</description></item><item><title>GitHub Webhook V2 Connector: CLv2 Migration Ensures Continued GitHub Advanced Security Ingestion</title><link>http://sentinelchangelog.net/posts/2026-04-27-pr-14111/</link><pubDate>Mon, 27 Apr 2026 15:15:18 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-27-pr-14111/</guid><description>New CLv2-based GitHub Webhook connector replaces deprecated CLv1 API to maintain ingestion of code scanning, Dependabot, and secret scanning alerts.</description></item><item><title>Cyjax Threat Intelligence Platform: Complete Solution for IOC Ingestion and Investigation</title><link>http://sentinelchangelog.net/posts/2026-04-22-pr-13902/</link><pubDate>Wed, 22 Apr 2026 09:06:53 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-22-pr-13902/</guid><description>New comprehensive Microsoft Sentinel integration adds automated IOC collection, incident enrichment, and interactive threat intelligence dashboards for the Cyjax platform.</description></item><item><title>ExtraHop RevealX Connector: Function App Package Reverted to Address Customer Issues</title><link>http://sentinelchangelog.net/posts/2026-04-21-pr-14105/</link><pubDate>Tue, 21 Apr 2026 12:54:13 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-21-pr-14105/</guid><description>ExtraHop connector reverted to previous function app package to resolve customer-facing deployment issues affecting data ingestion.</description></item><item><title>AWS CloudTrail Connector: Function App Crash Fix for Unsupported File Types</title><link>http://sentinelchangelog.net/posts/2026-04-21-pr-14104/</link><pubDate>Tue, 21 Apr 2026 11:12:13 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-21-pr-14104/</guid><description>Fixes potential Python exception in CloudTrail ingestion function when encountering unsupported file formats, preventing data ingestion failure.</description></item><item><title>AWS S3 and CEF Connectors: Security Alert Remediation Fixes Error Handling Gaps</title><link>http://sentinelchangelog.net/posts/2026-04-20-pr-14088/</link><pubDate>Mon, 20 Apr 2026 09:51:55 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-20-pr-14088/</guid><description>Python connector security vulnerabilities patched with improved error handling and null check additions.</description></item><item><title>Four Legacy Azure Function Connectors Marked for Deprecation - Migration to CCF Required</title><link>http://sentinelchangelog.net/posts/2026-04-14-pr-14073/</link><pubDate>Tue, 14 Apr 2026 21:01:38 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-14-pr-14073/</guid><description>Microsoft has deprecated Azure Function-based connectors for Okta SSO, SentinelOne, Sophos Endpoint Protection, and VMware Carbon Black Cloud in favor of CCF alternatives.</description></item><item><title>Function App Connectors Deprecated: Four Solutions Migrate to CCF Framework</title><link>http://sentinelchangelog.net/posts/2026-04-14-pr-14063/</link><pubDate>Tue, 14 Apr 2026 17:55:27 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-14-pr-14063/</guid><description>Legacy Azure Function connectors for Atlassian Jira, Auth0, Box, and CrowdStrike are now deprecated as solutions transition to the modern CCF architecture.</description></item><item><title>BeyondTrust PM Cloud: Critical Data Ingestion Fix Restores Partial Event Visibility</title><link>http://sentinelchangelog.net/posts/2026-04-14-pr-14031/</link><pubDate>Tue, 14 Apr 2026 06:39:46 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-14-pr-14031/</guid><description>A batching bug in the BeyondTrust PM Cloud connector was causing 413 errors and incomplete endpoint security event ingestion when payload sizes exceeded Log Analytics limits.</description></item><item><title>ExtraHop RevealX: Azure Monitor Logs Ingestion API Replaces Legacy HTTP Data Collector</title><link>http://sentinelchangelog.net/posts/2026-04-10-pr-13886/</link><pubDate>Fri, 10 Apr 2026 06:41:14 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-10-pr-13886/</guid><description>Added Log Ingestion API support with OAuth 2.0 authentication — modernizes data ingestion from legacy HTTP Data Collector API.</description></item><item><title>Trend Micro Vision One Connector: South Africa Region Support Added</title><link>http://sentinelchangelog.net/posts/2026-04-09-pr-14009/</link><pubDate>Thu, 09 Apr 2026 08:47:50 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-09-pr-14009/</guid><description>Added South Africa (za) regional API endpoint support, expanding global deployment coverage for Trend Micro Vision One data ingestion.</description></item><item><title>Cisco Umbrella Connector: Critical Fix for State Manager Corruption and Data Ingestion Crashes</title><link>http://sentinelchangelog.net/posts/2026-03-25-pr-13899/</link><pubDate>Wed, 25 Mar 2026 17:53:34 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-25-pr-13899/</guid><description>Cisco Umbrella connector fixes critical null-byte corruption in Azure File Share state markers that was causing complete ingestion failures.</description></item><item><title>IPinfo Connectors: Azure Functions Dependency Fix for Linux Runtime</title><link>http://sentinelchangelog.net/posts/2026-03-24-pr-13875/</link><pubDate>Tue, 24 Mar 2026 10:39:04 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-24-pr-13875/</guid><description>All IPinfo connector Azure Function packages rebuilt to resolve dependency issues with Linux runtime.</description></item><item><title>Commvault Security IQ: Enhanced Threat Scan Event Coverage and Parser Fix</title><link>http://sentinelchangelog.net/posts/2026-03-24-pr-13869/</link><pubDate>Tue, 24 Mar 2026 10:38:30 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-24-pr-13869/</guid><description>Two new threat scan event types added to ingestion with regex fix for PascalCase field extraction.</description></item><item><title>Illumio Connector: Enhanced Security with Managed Identity Authentication</title><link>http://sentinelchangelog.net/posts/2026-03-24-pr-13691/</link><pubDate>Tue, 24 Mar 2026 10:02:51 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-24-pr-13691/</guid><description>Illumio Function App connector replaces DefaultAzureCredential with ManagedIdentityCredential, eliminating client secret exposure.</description></item><item><title>GreyNoise Threat Intelligence: SDK Update Addresses Function App Runtime Issues</title><link>http://sentinelchangelog.net/posts/2026-03-23-pr-13819/</link><pubDate>Mon, 23 Mar 2026 09:47:58 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-23-pr-13819/</guid><description>Updated GreyNoise Python SDK to v3.0.3, fixed module mismatches, and bumped Azure Functions runtime to resolve connector stability issues.</description></item><item><title>Upwind Cloud Security: New Data Connector Unlocks Cloud Asset Visibility</title><link>http://sentinelchangelog.net/posts/2026-03-23-pr-13778/</link><pubDate>Mon, 23 Mar 2026 06:38:23 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-23-pr-13778/</guid><description>New Upwind solution enables ingestion of compute platform assets with risk assessments, vulnerability data, and network exposure metrics.</description></item><item><title>CrowdStrike Adversary Intelligence Connector: Function App Deployment Fix</title><link>http://sentinelchangelog.net/posts/2026-03-20-pr-13864/</link><pubDate>Fri, 20 Mar 2026 07:22:38 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-20-pr-13864/</guid><description>Version constraint fix restores Function App deployment after Azure Functions runtime compatibility issue.</description></item><item><title>CyberArk Audit Connector: Enhanced Documentation and Deployment Warnings</title><link>http://sentinelchangelog.net/posts/2026-03-18-pr-13755/</link><pubDate>Wed, 18 Mar 2026 12:30:25 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-18-pr-13755/</guid><description>Function App connector updated with critical migration disclaimers to prevent dual-deployment data duplication.</description></item><item><title>Semperis Lightning: New Active Directory Security Monitoring Platform Added to Content Hub</title><link>http://sentinelchangelog.net/posts/2026-03-17-pr-13719/</link><pubDate>Tue, 17 Mar 2026 14:36:30 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-17-pr-13719/</guid><description>Semperis Lightning connector brings comprehensive Active Directory tier-0 attack path monitoring and privileged access visibility to Microsoft Sentinel via real-time API ingestion.</description></item><item><title>IPinfo Data Connectors: Critical Function App Runtime Fix for Production Deployment</title><link>http://sentinelchangelog.net/posts/2026-03-17-pr-13824/</link><pubDate>Tue, 17 Mar 2026 05:08:31 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-17-pr-13824/</guid><description>Azure Functions were completely non-functional for marketplace deployments due to incorrect zip folder structure preventing runtime from locating host.json.</description></item><item><title>Cisco Umbrella Connector: Critical CSV Ingestion Failure Fixed</title><link>http://sentinelchangelog.net/posts/2026-03-13-pr-13818/</link><pubDate>Fri, 13 Mar 2026 17:27:17 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-13-pr-13818/</guid><description>Resolves complete ingestion stall caused by oversized CSV fields and null character parsing errors.</description></item><item><title>XBOW Autonomous Security Platform: Function App Connector and Detection Rules</title><link>http://sentinelchangelog.net/posts/2026-03-13-pr-13772/</link><pubDate>Fri, 13 Mar 2026 08:04:28 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-13-pr-13772/</guid><description>New XBOW solution provides asset inventory, vulnerability finding correlation, and automated security assessment visibility through Function App ingestion and four analytic rules.</description></item><item><title>Commvault Connector: Migration from Legacy Sentinel API to Modern Logs Ingestion Architecture</title><link>http://sentinelchangelog.net/posts/2026-03-11-pr-13703/</link><pubDate>Wed, 11 Mar 2026 09:11:08 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-11-pr-13703/</guid><description>Commvault Security IQ connector migrated from deprecated Log Analytics API to Azure Monitor Logs Ingestion API with DCE/DCR architecture.</description></item><item><title>IPinfo Solution: Three New Data Connectors with Enhanced OAuth Authentication</title><link>http://sentinelchangelog.net/posts/2026-03-10-pr-13734/</link><pubDate>Tue, 10 Mar 2026 08:17:23 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-10-pr-13734/</guid><description>IPinfo v3.0.3 adds Core, Plus, and Residential Proxy data connectors with robust Azure AD OAuth exception handling to prevent authentication blind spots.</description></item><item><title>AWS Athena Function App: Resolving Extension Bundle Compatibility and Query Result Parsing</title><link>http://sentinelchangelog.net/posts/2026-03-10-pr-13648/</link><pubDate>Tue, 10 Mar 2026 06:57:45 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-10-pr-13648/</guid><description>AWS Athena Function App connector updated to Azure Functions v4+ bundle and fixed Python query parsing logic that previously failed on empty result data.</description></item><item><title>Feedly Threat Intelligence: Migration from Azure Functions to Native CCF Connector</title><link>http://sentinelchangelog.net/posts/2026-03-09-pr-13748/</link><pubDate>Mon, 09 Mar 2026 06:16:39 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-09-pr-13748/</guid><description>Modernizes Feedly threat intelligence ingestion by removing Azure Function dependencies and migrating to native Sentinel CCF polling for IoC feeds.</description></item><item><title>CyeraDSPM Connector: Eliminates Legacy Azure Functions Deployment Path</title><link>http://sentinelchangelog.net/posts/2026-03-09-pr-13768/</link><pubDate>Mon, 09 Mar 2026 05:57:04 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-09-pr-13768/</guid><description>Removes deprecated Azure Functions connector from CyeraDSPM solution, streamlining to single CCF-based ingestion to prevent marketplace deployment failures.</description></item><item><title>Dataminr Pulse Connector: Extension Bundle Updated to Prevent Deployment Failures</title><link>http://sentinelchangelog.net/posts/2026-03-06-pr-13725/</link><pubDate>Fri, 06 Mar 2026 05:04:24 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-06-pr-13725/</guid><description>Function App extension bundle upgraded from deprecated v3 to v4 to restore connector deployment capability.</description></item><item><title>CTM360 HackerView: Connector Ingestion Restored After Complete Deployment Failure</title><link>http://sentinelchangelog.net/posts/2026-03-05-pr-13423/</link><pubDate>Thu, 05 Mar 2026 08:16:49 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-05-pr-13423/</guid><description>CTM360 HackerView Function App connector was completely broken due to backup flag logic errors, preventing all threat intelligence ingestion until this fix.</description></item><item><title>WithSecure Elements Connector: Python Runtime Upgrade to 3.12</title><link>http://sentinelchangelog.net/posts/2026-03-05-pr-13708/</link><pubDate>Thu, 05 Mar 2026 06:11:49 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-05-pr-13708/</guid><description>WithSecure Elements Function App connector upgraded from Python 3.10 to 3.12 to align with updated function code.</description></item><item><title>Cisco Duo Connector: Function Timeout Mitigation and Dependency Security Updates</title><link>http://sentinelchangelog.net/posts/2026-03-02-pr-13713/</link><pubDate>Mon, 02 Mar 2026 07:59:57 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-02-pr-13713/</guid><description>Fixes timeout-induced ingestion failures in offline enrollment log processing and updates duo-client library for security maintenance.</description></item><item><title>IPinfo: Multi-Workspace Support and Function App Deployment Reliability Improvements</title><link>http://sentinelchangelog.net/posts/2026-02-27-pr-13630/</link><pubDate>Fri, 27 Feb 2026 05:00:55 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-27-pr-13630/</guid><description>Comprehensive update to 17 IPinfo connectors enhancing deployment reliability with runtime pinning, dependency fixes, and multi-workspace DCR support.</description></item><item><title>Trend Micro Vision One: Azure Storage Account TLS Security Hardening</title><link>http://sentinelchangelog.net/posts/2026-02-26-pr-13697/</link><pubDate>Thu, 26 Feb 2026 10:01:38 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-26-pr-13697/</guid><description>Critical security hardening update enforces minimum TLS 1.2 for Azure storage accounts in Function App deployment template.</description></item><item><title>JoeSandbox Solution: Updated Deployment Links and Removed Manual Installation Steps</title><link>http://sentinelchangelog.net/posts/2026-02-13-pr-13623/</link><pubDate>Fri, 13 Feb 2026 11:30:47 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-13-pr-13623/</guid><description>JoeSandbox solution deployment documentation updated with corrected Azure links and streamlined automated deployment options.</description></item><item><title>Lumen Threat Feed: V2 Connector Replaces Deprecated V1.1 with Paginated API Support</title><link>http://sentinelchangelog.net/posts/2026-02-12-pr-13575/</link><pubDate>Thu, 12 Feb 2026 20:25:13 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-12-pr-13575/</guid><description>Lumen Defender Threat Feed solution updated with V2 connector using new API v3 endpoint, removing deprecated V1.1 connector entirely.</description></item><item><title>Cisco Duo Security: Critical Deployment Fix Resolves Portal Installation Failures</title><link>http://sentinelchangelog.net/posts/2026-02-05-pr-13532/</link><pubDate>Thu, 05 Feb 2026 14:59:57 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-05-pr-13532/</guid><description>Azure portal deployment failures resolved by fixing empty location parameters and updating Python runtime compatibility to prevent connector breakage.</description></item><item><title>New Solution: TacitRed Defender Threat Intelligence Integration</title><link>http://sentinelchangelog.net/posts/2026-02-04-pr-13266/</link><pubDate>Wed, 04 Feb 2026 13:05:23 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-04-pr-13266/</guid><description>Official TacitRed Defender TI solution from Data443 enables automated sync of compromised credentials to Microsoft Defender Threat Intelligence.</description></item><item><title>CyberArk EPM Connector: Critical Package Fix Restores Function App Deployment</title><link>http://sentinelchangelog.net/posts/2026-02-04-pr-13527/</link><pubDate>Wed, 04 Feb 2026 05:23:27 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-04-pr-13527/</guid><description>Missing .python_packages dependency added to function app package, resolving deployment failures that blocked connector installations.</description></item></channel></rss>