New Release: SharePointDsc now supports SharePoint Server Subscription Edition!

We are thrilled to announce that the next major version of SharePointDsc is here, v5.0 has just been released to the PowerShell Gallery! And of course there is a reason that we published a new major version: With v5.0 SharePointDsc now also supports Sh… Continue reading New Release: SharePointDsc now supports SharePoint Server Subscription Edition!

What’s New: Detecting Apache Log4j vulnerabilities with Microsoft Sentinel

Microsoft’s security research teams have been tracking threats taking advantage of the remote code execution (RCE) vulnerability in Apache Log4j 2 referred to as “Log4Shell” and tracked as CVE-2021-44228. The vulnerability allows unauthenticated remote… Continue reading What’s New: Detecting Apache Log4j vulnerabilities with Microsoft Sentinel

What’s New: Using Microsoft Sentinel to detect Apache Log4j vulnerabilities

Microsoft’s security research teams have been tracking threats taking advantage of the remote code execution (RCE) vulnerability in Apache Log4j 2 referred to as “Log4Shell” and tracked as CVE-2021-44228. The vulnerability allows unauthenticated remote… Continue reading What’s New: Using Microsoft Sentinel to detect Apache Log4j vulnerabilities

Forward On-Premises Windows Security Event Logs to Microsoft Sentinel

 
Hello,
It has been a while since Raven, and I have blogged on security. My little buddy Raven (miniature Schnauzer) has been dealing with genetic back problems that have made it difficult to run or jump, so her days of roaming the yard and scari… Continue reading Forward On-Premises Windows Security Event Logs to Microsoft Sentinel

Block USB in Microsoft Defender for Endpoint and Intune

A common request from information security teams is the ability to block mass storage devices. As every security defender knows, you cannot draw a hard line and block EVERY USB mass storage device. Exceptions will always come up. In this blog article, … Continue reading Block USB in Microsoft Defender for Endpoint and Intune