On dévoile le programme de l'année, puis Tyler Green et Kevin Mudiandambo (Tilt) présentent leur approche de la télémétrie .NET : App Insights, KQL, alertes et IA.
🗓️ Mar. 29 sept., 18 h · McGill
🗣️ En français
www.meetup.com/msdevmtl/eve...
On dévoile le programme de l'année, puis Tyler Green et Kevin Mudiandambo (Tilt) présentent leur approche de la télémétrie .NET : App Insights, KQL, alertes et IA.
🗓️ Mar. 29 sept., 18 h · McGill
🗣️ En français
www.meetup.com/msdevmtl/eve...
#BCTechDays 2026 session recording now released!
What if an AI agent could investigate your BC telemetry, figure out the right events, generate the KQL and help explain what’s going wrong?
📺 Now available for everyone on mibuso.tv
#BCTechDays 2026 session recording now released!
What if an AI agent could investigate your BC telemetry, figure out the right events, generate the KQL and help explain what’s going wrong?
📺 Now available for everyone on mibuso.tv
➡️ https://l.auto-moto.com/kQl
➡️ https://l.auto-moto.com/kQl
➡️ https://l.lejdc.fr/kqL
➡️ https://l.lejdc.fr/kqL
https://go.rodtrent.com/go/pqn8e86
https://go.rodtrent.com/go/pqn8e86
https://azuretracks.com/2026/09/reduce-log-analytics-noise-with-azure-monitor-dcr-transformations/?utm_source=bluesky&utm_medium=social&utm_campaign=newsletter
https://azuretracks.com/2026/09/reduce-log-analytics-noise-with-azure-monitor-dcr-transformations/?utm_source=bluesky&utm_medium=social&utm_campaign=newsletter
For detection engineering, I might surface Sigma validation, SPL and coverage gaps.
Different roles require different evidence.
For detection engineering, I might surface Sigma validation, SPL and coverage gaps.
Different roles require different evidence.
SIEM analysis
SPL and KQL
Alert triage
Hypothesis testing
Timeline building
Incident scoping
MITRE ATT&CK
I’m practising how to connect separate events until they form a defensible conclusion.
SIEM analysis
SPL and KQL
Alert triage
Hypothesis testing
Timeline building
Incident scoping
MITRE ATT&CK
I’m practising how to connect separate events until they form a defensible conclusion.
Attackers no longer need to breach the network.
They just log into Okta or Entra ID.
Golden SAML • AiTM (Evilginx3) • OAuth Illicit Consent
Full technical analysis + hardening & detection (SPL + KQL):
#IdPAttacks #Okta #EntraID #GoldenSAML #CyberSecurity
Attackers no longer need to breach the network.
They just log into Okta or Entra ID.
Golden SAML • AiTM (Evilginx3) • OAuth Illicit Consent
Full technical analysis + hardening & detection (SPL + KQL):
#IdPAttacks #Okta #EntraID #GoldenSAML #CyberSecurity
➡️ https://l.humanite.fr/kQL
➡️ https://l.humanite.fr/kQL
4-hour hands-on workshop covering common attacks, tokens, Conditional Access, and real KQL hunting.
Device code phishing • AiTM • refresh token replay — and how to detect them.
With Ethan Bowen.
#EntraID #CloudIdentity #SOC
4-hour hands-on workshop covering common attacks, tokens, Conditional Access, and real KQL hunting.
Device code phishing • AiTM • refresh token replay — and how to detect them.
With Ethan Bowen.
#EntraID #CloudIdentity #SOC
Download from: github.com/NeilMacMulle...
Download from: github.com/NeilMacMulle...
https://www.valtersit.com/vault/detecting-persistence-via-new-azure-ad-dynamic-group-rule-mo-9fef0c/
https://www.valtersit.com/vault/detecting-persistence-via-new-azure-ad-dynamic-group-rule-mo-9fef0c/