<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>T1110 on sentinelchangelog.net</title><link>http://sentinelchangelog.net/tags/t1110/</link><description>Recent content in T1110 on sentinelchangelog.net</description><generator>Hugo -- 0.157.0</generator><language>en</language><lastBuildDate>Mon, 01 Jun 2026 04:39:34 +0000</lastBuildDate><atom:link href="http://sentinelchangelog.net/tags/t1110/index.xml" rel="self" type="application/rss+xml"/><item><title>Slack Audit Solution: Enhanced Detection Logic and Alert Enrichment</title><link>http://sentinelchangelog.net/posts/2026-06-01-pr-14245/</link><pubDate>Mon, 01 Jun 2026 04:39:34 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-06-01-pr-14245/</guid><description>Slack Audit analytic rules, hunting queries, and workbook upgraded with improved KQL logic, custom alert details, and enhanced entity mappings for stronger workspace monitoring.</description></item><item><title>42Crunch API Protection: Critical Migration from Legacy HTTP Collector to CCF Push Connector</title><link>http://sentinelchangelog.net/posts/2026-05-29-pr-14210/</link><pubDate>Fri, 29 May 2026 16:38:05 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-29-pr-14210/</guid><description>Migration addresses deprecated HTTP Data Collector API by implementing CCF OAuth2/Entra ID ingestion — deployments on legacy connector face imminent data loss.</description></item><item><title>AWS Content Quality Overhaul: Standardized Detection Rules and Improved Entity Mappings</title><link>http://sentinelchangelog.net/posts/2026-05-18-pr-14101/</link><pubDate>Mon, 18 May 2026 07:30:57 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-18-pr-14101/</guid><description>Comprehensive quality improvements to 61 AWS Analytic Rules and 35 Hunting Queries with standardized naming conventions, normalized MITRE technique mappings, and updated entity field references from legacy AccountCustomEntity to UserIdentityUserName.</description></item><item><title>Flare Solution 3.1.0: Enhanced Threat Intelligence Detection Coverage</title><link>http://sentinelchangelog.net/posts/2026-05-12-pr-14126/</link><pubDate>Tue, 12 May 2026 09:22:23 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-12-pr-14126/</guid><description>Flare Solution updates detection logic and adds three new Analytic Rules for improved threat exposure monitoring across chat platforms, lookalike domains, and underground marketplaces.</description></item><item><title>Claroty: Enhanced IoT/OT Detection with Improved Alert Fidelity</title><link>http://sentinelchangelog.net/posts/2026-05-05-pr-14107/</link><pubDate>Tue, 05 May 2026 09:58:40 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-05-05-pr-14107/</guid><description>Updated 9 analytic rules and 10 hunting queries with strengthened entity mapping, alert details, and MITRE coverage for OT/IoT network monitoring.</description></item><item><title>Microsoft Security Copilot: Six New Detections for AI Assistant Abuse</title><link>http://sentinelchangelog.net/posts/2026-03-27-pr-13735/</link><pubDate>Fri, 27 Mar 2026 05:01:42 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-27-pr-13735/</guid><description>New analytic rules target jailbreak attempts, external access, plugin tampering, and file upload disabling - covering major AI security attack vectors.</description></item><item><title>New Attack Surface Management Solution: blacklens.io Brings External Threat Visibility to Microsoft Sentinel</title><link>http://sentinelchangelog.net/posts/2026-03-26-pr-13375/</link><pubDate>Thu, 26 Mar 2026 12:48:50 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-03-26-pr-13375/</guid><description>blacklens.io Attack Surface Management platform now available in Content Hub with webhook-based alert ingestion and automated incident creation.</description></item><item><title>Azure Firewall: Five New IDPS Analytic Rules for Advanced Threat Detection</title><link>http://sentinelchangelog.net/posts/2026-02-13-pr-13591/</link><pubDate>Fri, 13 Feb 2026 08:19:01 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2026-02-13-pr-13591/</guid><description>Azure Firewall solution expanded with 5 new analytic rules targeting high/medium severity threats, DDoS attacks, web application attacks, and privilege escalation attempts.</description></item><item><title>UEBA Essentials: Enhanced Multi-Cloud Detection with 6 New AWS, GCP &amp; Okta Hunting Queries</title><link>http://sentinelchangelog.net/posts/2025-11-12-pr-13065/</link><pubDate>Wed, 12 Nov 2025 11:17:58 +0000</pubDate><guid>http://sentinelchangelog.net/posts/2025-11-12-pr-13065/</guid><description>Major update adds comprehensive multi-cloud anomaly detection capabilities across AWS, GCP, and Okta platforms with 6 new hunting queries.</description></item></channel></rss>