cloud security
50 TopicsMicrosoft Sentinel Deployment & Log Ingestion: Ingesting Platform Logs via Diagnostic Settings
Hello Immersive Labs community, I’ve been working through the lab tasks and successfully completed tasks 1 through 6. However, I’m stuck on task 7, which asks: "A storage account has been deleted. What would be the data type of the generated log?" The task seems oddly described, and I can’t find any clear hints in the lab briefing or online resources. I’ve tried querying various data types like AzureActivity, AuditLogs, StorageBlobLogs, StorageFileLogs, and others, but none seem to fit correctly. Could anyone provide guidance or confirm which data type is actually relevant for this scenario? Are there any specific tips or resources I might be missing? Thanks in advance for your help!2KViews0likes1CommentGoogle Cloud Basics: Ep.7 – Demonstrate Your Skills - Task 10
Hi Team, I have been stuck on this lab for like 24hrs and I am pretty sure I am doing the right thing as per knowledge. Is there a chance this lab is broken as the lab doesn't auto-complete at all ? I assign and grant the storage object viewer permissions on IAM for the new Service Account but it doesn't apply at all .805Views0likes3CommentsI want to start again with the lab. Can you reset the lab for me?
I want to complete the lab for a second time.Solved799Views0likes1CommentHow do you use the clipboard feature within labs?
Can anyone tell me how I can use the clipboard feature within labs?Solved500Views0likes2CommentsAWS Security Hub: Integrations and Custom Actions
Hi everyone! Q10 (create a rule called SecHub-tickets) on this lab is not completing. After I click create rule (Step 5) on the EventBridge, I got an error: Access denied to iam:CreateRole You don't have permission to iam:CreateRole. To request access, copy the following text and send it to your AWS administrator. Anybody had the same error here or working as expected there? Thanks in advance!Solved496Views1like6CommentsMicrosoft Sentinel Deployment & Log Ingestion: Ingesting Platform Logs via Diagnostic Settings
I've followed question 4 to the letter multiple times (fully resetting the lab twice) and it still won't update, can someone run through the lab and see if it updates for you?Solved400Views0likes3CommentsSnort Rules: Ep.5 – Fake Tech Support Popup
I have been stuck on Question 5 for a while now. Create a Snort rule to detect connections to this IP address from 10.1.9.101 on port 49349, then submit the token. Does this IP refer to IP in the previous question? If so, I have tried so many different rules but one worked.Solved400Views1like1CommentMicrosoft Sentinel: SOAR Demonstrate your skills
Hello all, I am struggling on question 6 where I feel like I have the Condition portion setup correctly but it won't say that it is completed. The condition is supposed to be within the For Each loop correct? The Condition parameters is: AND - Body Risk = HighSolved299Views0likes5Comments