Skip to content
Menu
IT-DRAFTS
  • About
  • My Statistics at Microsoft Q&A
  • Privacy policy
IT-DRAFTS

Tag: SIEM

April 10, 2026

Sentinel + GitHub + IP allow list = everything works… until u turn security on

There is a very specific type of failure that shows up in Microsoft Sentinel setups.No errors. No alerts. No logs screaming at u. Just… nothing works. You connect the GitHub app.Authorisation succeeds.UI looks fine. And your repositories simply do not appear. Then u disable the IP allow list in GitHub… and suddenly everything works. That…

Read More
February 19, 2026

SIEM Is Dead. Long Live the Unified Security Plane.

From Logs to Context: How Sentinel + Defender Redefine SOC Architecture 🙂 Alright my friend, let me explain this the way I would to you over coffee, not in a marketing deck. What Microsoft is doing with Microsoft Sentinel inside the Defender portal is not just a UI consolidation. It is an operational model shift…

Read More
February 9, 2026

How AI is reshaping cyber threats and how Microsoft really deals with it in 2026

By 2026 artificial intelligence is no longer something that security teams discuss in strategy decks or conference talks. It is something they encounter on a Monday morning when alerts start coming in before anyone has finished their coffee. AI quietly changed the rhythm of attacks. There is no preparation phase anymore. No clear start. No…

Read More
January 20, 2026

Microsoft Sentinel — What’s New in January 2026

Oh well, hello there, folks… After a long Christmas break — the kind where even your SOC starts snoring softly and the alert queue feels blissfully distant — we’re finally back to real life. The coffee is strong again.The analysts are sarcastic again.And AI, naturally, is still trying to behave like an employee with far…

Read More
July 21, 2025

Microsoft Sentinel: Now Smarter, Meaner, and Autogenerating Paranoia

July 2025 Updates — Welcome to the age of Copilot-driven SOC mayhem Another month, another round of Microsoft Sentinel updates. But this time, it’s not just “new features” — it’s Copilot on caffeine, automation on steroids, and behavior analytics that feel more like digital surveillance than SIEM. 🔥 What’s new in July? 🧠 Incident Enrichment…

Read More

Categories

ActiveDirectory AI AIInfrastructure AIsecurity Azure AzureAI azuresecurity cloudarchitecture CloudSecurity conditionalaccess Copilot ctrlaltdelblog Cybersecurity DataSecurity DevOps devsecops DigitalTransformation enterpriseai enterpriseit enterprisesecurity Entra entraID hybridcloud identitysecurity infosec Innovation Intune ITInfrastructure Microsoft Microsoft365 MicrosoftAzure Microsoft Product microsoftsecurity MicrosoftSentinel promptinjection Security securitycopilot SIEM SoftwareUpdate TechNews threatintelligence updates Windows10 Windows11 zeroTrust

Archives

  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • February 2025
  • October 2024
  • September 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
No comments to show.

Recent Comments

Recent Posts

  • Sentinel + GitHub + IP allow list = everything works… until u turn security on
  • Azure is “infinite”… until it very much is not
  • Microsoft 365 Copilot Chat: Architectural Shift Toward a Unified AI Work Surface
  • 10 Entra ID Configurations That Should Not Be Left in Their Default State
  • Windows 11 Update Breaks Offline Login — What That Really Means
©2026 IT-DRAFTS | Powered by WordPress and Superb Themes!