<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Playbooks on sentinelchangelog.net</title><link>http://sentinelchangelog.net/tags/playbooks/</link><description>Recent content in Playbooks on sentinelchangelog.net</description><generator>Hugo -- 0.157.0</generator><language>en</language><lastBuildDate>Mon, 25 May 2026 06:58:27 +0000</lastBuildDate><atom:link href="http://sentinelchangelog.net/tags/playbooks/index.xml" rel="self" type="application/rss+xml"/><item><title>Fortinet FortiGate Playbook: Function App Authentication Security Hardening</title><link>http://sentinelchangelog.net/posts/2026-05-25-pr-14316/</link><pubDate>Mon, 25 May 2026 06:58:27 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-25-pr-14316/</guid><description>Playbook Function App authentication level upgraded from anonymous to function-level to close security exposure.</description></item><item><title>Cyren Defender Threat Intelligence: New IP and Malware URL Ingestion for Microsoft Sentinel</title><link>http://sentinelchangelog.net/posts/2026-05-25-pr-14121/</link><pubDate>Mon, 25 May 2026 05:24:48 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-25-pr-14121/</guid><description>Content Hub solution adds Cyren threat intelligence feeds for IP reputation and malware URL indicators via automated Logic App playbook.</description></item><item><title>New Cyren-CrowdStrike Threat Intelligence Solution: Automated IOC Sync for Enhanced Threat Detection</title><link>http://sentinelchangelog.net/posts/2026-05-20-pr-13658/</link><pubDate>Wed, 20 May 2026 09:16:04 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-20-pr-13658/</guid><description>Logic App playbook now available to automatically sync Cyren IP reputation and malware URL indicators to CrowdStrike Falcon for streamlined threat blocking.</description></item><item><title>Google Directory Solution: New Playbook Integration with Extended Security Scope</title><link>http://sentinelchangelog.net/posts/2026-05-18-pr-14273/</link><pubDate>Mon, 18 May 2026 12:09:43 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-18-pr-14273/</guid><description>Initial release of GoogleDirectory solution adds Google Workspace user security management capabilities to Microsoft Sentinel playbook automation.</description></item><item><title>Function App Security: Access Control Hardening Across Multiple Data Connectors</title><link>http://sentinelchangelog.net/posts/2026-05-18-pr-14284/</link><pubDate>Mon, 18 May 2026 10:00:54 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-18-pr-14284/</guid><description>Function keys now required for HTTP-triggered functions in Zoom, Zscaler, FortiGate, Cofense, Illumio, and Infoblox connectors—removing anonymous access vulnerability.</description></item><item><title>Flare Solution 3.1.0: Enhanced Threat Intelligence Detection Coverage</title><link>http://sentinelchangelog.net/posts/2026-05-12-pr-14126/</link><pubDate>Tue, 12 May 2026 09:22:23 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-12-pr-14126/</guid><description>Flare Solution updates detection logic and adds three new Analytic Rules for improved threat exposure monitoring across chat platforms, lookalike domains, and underground marketplaces.</description></item><item><title>Recorded Future Identity Playbook: ARM Template Deploy Failure Fixed</title><link>http://sentinelchangelog.net/posts/2026-05-07-pr-14197/</link><pubDate>Thu, 07 May 2026 10:53:02 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-07-pr-14197/</guid><description>Fixes broken deployment of RFI-confirm-EntraID-risky-user playbook that failed with InvalidTemplate error due to stale action references.</description></item><item><title>Vaikora AI Agent Security Monitoring for Defender for Cloud</title><link>http://sentinelchangelog.net/posts/2026-05-05-pr-13986/</link><pubDate>Tue, 05 May 2026 07:17:48 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-05-pr-13986/</guid><description>New Vaikora solution enables real-time AI agent threat detection through automated security alert ingestion and behavioral anomaly monitoring.</description></item><item><title>Joe Sandbox Solution: ARM Template Fixes and IOC Handling Improvements</title><link>http://sentinelchangelog.net/posts/2026-05-04-pr-14130/</link><pubDate>Mon, 04 May 2026 12:39:49 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-04-pr-14130/</guid><description>Joe Sandbox solution updated to v3.0.1 with Azure template fixes, updated storage API versions, and improved IOC processing in playbooks.</description></item><item><title>New Vaikora-CrowdStrike Integration: AI Agent Behavioral Signals to Custom IOCs</title><link>http://sentinelchangelog.net/posts/2026-04-30-pr-13984/</link><pubDate>Thu, 30 Apr 2026 06:47:13 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-30-pr-13984/</guid><description>Logic App Playbook introduced to poll Vaikora AI agent signals and push high-risk actions as Custom IOCs to CrowdStrike Falcon for automated threat prevention.</description></item><item><title>Vaikora AI Security: New Logic App Playbook for SentinelOne Threat Intelligence Integration</title><link>http://sentinelchangelog.net/posts/2026-04-29-pr-13985/</link><pubDate>Wed, 29 Apr 2026 12:39:43 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-29-pr-13985/</guid><description>Data443 introduces Vaikora AI agent behavioral signal integration with SentinelOne threat intelligence via a 6-hour polling playbook.</description></item><item><title>New Spur Context API Solution: High-Fidelity IP Intelligence for VPN and Proxy Detection</title><link>http://sentinelchangelog.net/posts/2026-04-29-pr-14148/</link><pubDate>Wed, 29 Apr 2026 10:42:32 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-29-pr-14148/</guid><description>New solution provides real-time IP enrichment to detect VPN, residential proxy, and bot automation traffic in incidents and alerts.</description></item><item><title>SOCRadar XTI Platform: New Extended Threat Intelligence Solution Launches with Bidirectional Sync</title><link>http://sentinelchangelog.net/posts/2026-04-23-pr-13858/</link><pubDate>Thu, 23 Apr 2026 05:24:37 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-23-pr-13858/</guid><description>SOCRadar XTI Platform solution now available in Content Hub with automated alarm import, incident sync, and comprehensive threat intelligence monitoring capabilities.</description></item><item><title>Cyjax Threat Intelligence Platform: Complete Solution for IOC Ingestion and Investigation</title><link>http://sentinelchangelog.net/posts/2026-04-22-pr-13902/</link><pubDate>Wed, 22 Apr 2026 09:06:53 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-22-pr-13902/</guid><description>New comprehensive Microsoft Sentinel integration adds automated IOC collection, incident enrichment, and interactive threat intelligence dashboards for the Cyjax platform.</description></item><item><title>Recorded Future Identity: Prepares for Microsoft Defender Portal Migration by Deprecating Legacy Incident Creation</title><link>http://sentinelchangelog.net/posts/2026-04-21-pr-13682/</link><pubDate>Tue, 21 Apr 2026 10:12:16 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-21-pr-13682/</guid><description>Recorded Future Identity solution deprecates Logic Apps-based incident creation and introduces Analytic Rules for Microsoft Defender Portal compatibility.</description></item><item><title>Recorded Future Sandbox: Enhanced Region Support and Improved Threat Intelligence Structure</title><link>http://sentinelchangelog.net/posts/2026-04-20-pr-14056/</link><pubDate>Mon, 20 Apr 2026 05:13:10 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-20-pr-14056/</guid><description>Recorded Future adds sandbox region configuration parameter and moves threat intelligence evidence details to comply with STIX standard structure.</description></item><item><title>Censys Solution: New Related Infrastructure Playbook Enhances Threat Pivot Capabilities</title><link>http://sentinelchangelog.net/posts/2026-04-17-pr-13994/</link><pubDate>Fri, 17 Apr 2026 07:15:59 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-17-pr-13994/</guid><description>Censys solution adds playbook and workbook for automated infrastructure pivoting and pivot analysis visualization using the Pivot Analysis API.</description></item><item><title>SAP: New Agentless User Blocking Playbook for Defender XDR Integration</title><link>http://sentinelchangelog.net/posts/2026-04-16-pr-14071/</link><pubDate>Thu, 16 Apr 2026 05:05:00 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-16-pr-14071/</guid><description>New SAP playbook enables automated user blocking via Teams adaptive cards with enhanced support for complex multi-alert incidents from Microsoft Defender XDR.</description></item><item><title>Check Point Cyberint: Bi-Directional Alert Sync and Critical Data Ingestion Fix</title><link>http://sentinelchangelog.net/posts/2026-04-15-pr-13790/</link><pubDate>Wed, 15 Apr 2026 14:01:43 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-15-pr-13790/</guid><description>Adds comprehensive bi-directional sync playbooks and fixes critical ref_id column type bug that caused silent data loss in alert ingestion.</description></item><item><title>Blacklens Logic App: Fixed Invalid secureData Configuration Breaking Deployment</title><link>http://sentinelchangelog.net/posts/2026-04-10-pr-13946/</link><pubDate>Fri, 10 Apr 2026 07:20:38 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-10-pr-13946/</guid><description>Resolved deployment failure caused by invalid secureData configuration in Logic App Compose action.</description></item><item><title>Cyren-SentinelOne Connector: Restoring Threat Intelligence Deployment After ARM Template Failure</title><link>http://sentinelchangelog.net/posts/2026-04-07-pr-13990/</link><pubDate>Tue, 07 Apr 2026 13:22:30 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-07-pr-13990/</guid><description>Critical deployment fix for Cyren-SentinelOne connector that was failing ARM template validation in Content Hub, preventing threat intelligence data ingestion.</description></item><item><title>Recorded Future: IOC Enrichment Noise Reduction via Risk Score Thresholding</title><link>http://sentinelchangelog.net/posts/2026-04-02-pr-13545/</link><pubDate>Thu, 02 Apr 2026 06:26:29 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-04-02-pr-13545/</guid><description>Added configurable RiskScoreThreshold parameter to prevent low-risk IOCs from generating incident comments.</description></item><item><title>Cyren-SentinelOne Playbook: Credential Parameter Security Compliance Fix</title><link>http://sentinelchangelog.net/posts/2026-03-30-pr-13945/</link><pubDate>Mon, 30 Mar 2026 14:09:23 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-30-pr-13945/</guid><description>Fixed Policy 300.4.1.1 violation by securing credential parameters in the Cyren-SentinelOne threat intelligence integration Playbook.</description></item><item><title>Cyren Threat Intelligence: SentinelOne IOC Automation Solution Deployed</title><link>http://sentinelchangelog.net/posts/2026-03-24-pr-13657/</link><pubDate>Tue, 24 Mar 2026 04:56:32 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-24-pr-13657/</guid><description>New Content Hub solution automates IOC ingestion from Cyren CCF feeds (IP reputation and malware URLs) into SentinelOne for automated threat detection and response.</description></item><item><title>New Censys Solution: Attack Surface Intelligence and Entity Enrichment</title><link>http://sentinelchangelog.net/posts/2026-03-18-pr-13752/</link><pubDate>Wed, 18 Mar 2026 13:27:59 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-18-pr-13752/</guid><description>Adds comprehensive playbook automation for Censys threat intelligence enrichment, providing IP/domain/certificate context during incident investigation.</description></item><item><title>Checkmarx Audit Log Ingestion Playbook: Security Event Monitoring Integration</title><link>http://sentinelchangelog.net/posts/2026-03-18-pr-13841/</link><pubDate>Wed, 18 Mar 2026 07:14:01 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-18-pr-13841/</guid><description>New playbook for ingesting Checkmarx audit log events into Microsoft Sentinel via DCR/DCE for security event monitoring and compliance.</description></item><item><title>Checkmarx SAST Ingestion Playbook: Static Application Security Testing Integration</title><link>http://sentinelchangelog.net/posts/2026-03-18-pr-13840/</link><pubDate>Wed, 18 Mar 2026 07:13:30 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-18-pr-13840/</guid><description>New playbook for ingesting Checkmarx SAST scan findings into Microsoft Sentinel via DCR/DCE for application vulnerability tracking.</description></item><item><title>TacitRed-CrowdStrike IOC Playbook: Partner Certification Header Compliance</title><link>http://sentinelchangelog.net/posts/2026-03-13-pr-13767/</link><pubDate>Fri, 13 Mar 2026 07:41:53 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-13-pr-13767/</guid><description>TacitRed-CrowdStrike playbook updated to include required User-Agent header for CrowdStrike Technology Partner certification compliance.</description></item><item><title>NetApp Ransomware Resilience: New Automated Incident Response Solution</title><link>http://sentinelchangelog.net/posts/2026-03-10-pr-13052/</link><pubDate>Tue, 10 Mar 2026 09:00:53 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-10-pr-13052/</guid><description>NetApp introduces modular playbooks for automated ransomware protection, enabling SOC teams to investigate, snapshot, and isolate compromised storage volumes via Microsoft Sentinel integration.</description></item><item><title>AWS Athena Function App: Resolving Extension Bundle Compatibility and Query Result Parsing</title><link>http://sentinelchangelog.net/posts/2026-03-10-pr-13648/</link><pubDate>Tue, 10 Mar 2026 06:57:45 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-10-pr-13648/</guid><description>AWS Athena Function App connector updated to Azure Functions v4+ bundle and fixed Python query parsing logic that previously failed on empty result data.</description></item><item><title>Recorded Future Playbooks: Threat Intelligence Integration Discontinued Due to Microsoft API Deprecation</title><link>http://sentinelchangelog.net/posts/2026-03-09-pr-13763/</link><pubDate>Mon, 09 Mar 2026 07:05:05 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-09-pr-13763/</guid><description>Microsoft has deprecated the Graph Security tiIndicators API, rendering Recorded Future&amp;rsquo;s automated threat intelligence ingestion playbooks non-functional.</description></item><item><title>TacitRed CrowdStrike Playbook: Authentication Fix for Multi-Region API Endpoints</title><link>http://sentinelchangelog.net/posts/2026-03-06-pr-13729/</link><pubDate>Fri, 06 Mar 2026 04:57:39 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-06-pr-13729/</guid><description>Fixed hardcoded CrowdStrike API URL default causing authentication failures for customers in US-1 and EU-1 regions.</description></item><item><title>TacitRed SentinelOne Playbook: Critical API Fix Restores IOC Automation After HTTP 500 Failures</title><link>http://sentinelchangelog.net/posts/2026-03-06-pr-13728/</link><pubDate>Fri, 06 Mar 2026 04:57:17 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-06-pr-13728/</guid><description>Fixed broken TacitRed playbook that was failing with HTTP 500 errors when posting IOCs to SentinelOne due to missing account scope parameter.</description></item><item><title>Microsoft Sentinel SOAR Playbook: Enhanced User Entity Resolution Prevents Silent Failures</title><link>http://sentinelchangelog.net/posts/2026-03-05-pr-13614/</link><pubDate>Thu, 05 Mar 2026 06:11:18 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-05-pr-13614/</guid><description>Incident-Trigger-Entity-Analyzer playbook upgraded with intelligent user identifier detection, resolving silent failures when entities lack AadUserId.</description></item><item><title>TacitRed-SentinelOne v3.0.2: Critical Fix for Broken SentinelOne Connection</title><link>http://sentinelchangelog.net/posts/2026-03-02-pr-13688/</link><pubDate>Mon, 02 Mar 2026 10:23:36 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-02-pr-13688/</guid><description>Fixes a critical deployment bug present since v1.0.0 where hardcoded placeholder URL caused complete playbook failure for all Content Hub installations.</description></item><item><title>Zscaler Internet Access: Major Platform Modernization with CloudNSS CCP Connectors</title><link>http://sentinelchangelog.net/posts/2026-02-18-pr-13391/</link><pubDate>Wed, 18 Feb 2026 10:12:05 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-18-pr-13391/</guid><description>Complete solution overhaul replaces legacy connectors with 15 CloudNSS CCP connectors and 12 OAuth2 playbooks for enhanced Zscaler integration.</description></item><item><title>TacitRed CrowdStrike IOC Automation: Critical Deployment Fix and Template Visibility</title><link>http://sentinelchangelog.net/posts/2026-02-17-pr-13641/</link><pubDate>Tue, 17 Feb 2026 06:45:14 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-17-pr-13641/</guid><description>Fixed InvalidResourceLocation deployment error and missing playbook template discovery for TacitRed CrowdStrike IOC automation solution.</description></item><item><title>TacitRed-SentinelOne Solution: Critical Deployment Fix for Content Hub Installation Failures</title><link>http://sentinelchangelog.net/posts/2026-02-17-pr-13640/</link><pubDate>Tue, 17 Feb 2026 06:44:34 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-17-pr-13640/</guid><description>Fixed InvalidResourceLocation deployment error and removed restrictive domain filter that was preventing TacitRed IOC automation deployments.</description></item><item><title>New Solution: TacitRed Defender Threat Intelligence Integration</title><link>http://sentinelchangelog.net/posts/2026-02-04-pr-13266/</link><pubDate>Wed, 04 Feb 2026 13:05:23 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-04-pr-13266/</guid><description>Official TacitRed Defender TI solution from Data443 enables automated sync of compromised credentials to Microsoft Defender Threat Intelligence.</description></item><item><title>TacitRed SentinelOne Solution: Partner Center Metadata Alignment and Template Fixes</title><link>http://sentinelchangelog.net/posts/2026-02-04-pr-13556/</link><pubDate>Wed, 04 Feb 2026 10:01:46 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-04-pr-13556/</guid><description>TacitRed SentinelOne solution metadata updated for Partner Center alignment with ARM template variable corrections.</description></item><item><title>New Solution: JoeSandbox Threat Intelligence and Malware Analysis Platform Integration</title><link>http://sentinelchangelog.net/posts/2026-01-22-pr-12801/</link><pubDate>Thu, 22 Jan 2026 09:02:45 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-01-22-pr-12801/</guid><description>Complete JoeSandbox solution deployment enabling automated malware analysis, threat intelligence feed ingestion, and incident enrichment playbooks for Microsoft Sentinel.</description></item><item><title>New Cyble Vision Threat Intelligence Solution: Comprehensive CCF-Based Alert Platform</title><link>http://sentinelchangelog.net/posts/2025-12-18-pr-13045/</link><pubDate>Thu, 18 Dec 2025 05:23:15 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-12-18-pr-13045/</guid><description>Massive new Cyble Vision solution providing 40+ specialized detection rules and parsers for diverse threat intelligence feeds from dark web to cloud security.</description></item><item><title>Microsoft Entra ID Playbooks: API Permission Updates for Session Revocation</title><link>http://sentinelchangelog.net/posts/2025-12-15-pr-13236/</link><pubDate>Mon, 15 Dec 2025 12:07:03 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-12-15-pr-13236/</guid><description>Updates Revoke-AADSignInSessions playbook documentation to use correct User.RevokeSessions.All permissions instead of broader User.ReadWrite.All.</description></item><item><title>SentinelSOARessentials: New Entity Analyzer Playbooks for Incident Response</title><link>http://sentinelchangelog.net/posts/2025-12-10-pr-13139/</link><pubDate>Wed, 10 Dec 2025 05:29:14 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-12-10-pr-13139/</guid><description>Three new entity analyzer playbooks added with HTTP, URL, and incident triggers for automated URL and user entity enrichment.</description></item><item><title>AbuseIPDB Playbooks: Typo Fixes and Logo Source Update</title><link>http://sentinelchangelog.net/posts/2025-12-09-pr-13137/</link><pubDate>Tue, 09 Dec 2025 07:58:52 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-12-09-pr-13137/</guid><description>Minor documentation and configuration fixes for AbuseIPDB playbooks including corrected image source and typo corrections.</description></item><item><title>NCSC-NL Threat Intelligence Sharing: Playbook Bug Fixes and JSON Structure Improvements</title><link>http://sentinelchangelog.net/posts/2025-11-21-pr-13072/</link><pubDate>Fri, 21 Nov 2025 09:17:34 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-11-21-pr-13072/</guid><description>Dutch National Detection Network threat intelligence sharing solution updated to v3.0.1 with playbook parameter fixes and improved JSON structure.</description></item><item><title>Rubrik Security Cloud: API Hostname Configuration Update for Customer Deployments</title><link>http://sentinelchangelog.net/posts/2025-11-14-pr-13082/</link><pubDate>Fri, 14 Nov 2025 06:54:17 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-11-14-pr-13082/</guid><description>Rubrik Security Cloud solution updated to v3.5.1 with corrected API hostname defaults across all playbooks and custom connector.</description></item><item><title>Vectra XDR: Log Ingestion API Migration and Enhanced API v3.4 Support with New Playbook Capabilities</title><link>http://sentinelchangelog.net/posts/2025-11-11-pr-13034/</link><pubDate>Tue, 11 Nov 2025 10:49:20 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-11-11-pr-13034/</guid><description>Vectra XDR solution updated to API v3.4 with Log Ingestion API support, three new playbooks for PCAP download and detection management.</description></item><item><title>Team Cymru Scout: Playbook Bug Fix for Incident Enrichment Template</title><link>http://sentinelchangelog.net/posts/2025-10-07-pr-12871/</link><pubDate>Tue, 07 Oct 2025 09:17:01 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-10-07-pr-12871/</guid><description>Fixed template error in TeamCymruScoutEnrichIncident playbook that was causing runtime failures.</description></item><item><title>Google Threat Intelligence: Enhanced Filtering for Threat List Queries</title><link>http://sentinelchangelog.net/posts/2025-10-01-pr-12857/</link><pubDate>Wed, 01 Oct 2025 07:57:31 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-10-01-pr-12857/</guid><description>Custom connector updated with filter query parameters for more targeted threat intelligence retrieval.</description></item></channel></rss>