Enhance KqlFuncYaml2Arm script with error handling#4
Conversation
Added error handling for Remove-Item and included a PoC for exfiltrating CI token.
|
Hi @hckeronebug, This PR has been open for 19 days with no recent activity. Please add a comment, commit, merge, or close this PR. |
|
Hi @hckeronebug, This PR has been open for 14 days with no recent activity. Please add a comment, commit, merge, or close this PR. |
5 similar comments
|
Hi @hckeronebug, This PR has been open for 14 days with no recent activity. Please add a comment, commit, merge, or close this PR. |
|
Hi @hckeronebug, This PR has been open for 14 days with no recent activity. Please add a comment, commit, merge, or close this PR. |
|
Hi @hckeronebug, This PR has been open for 14 days with no recent activity. Please add a comment, commit, merge, or close this PR. |
|
Hi @hckeronebug, This PR has been open for 14 days with no recent activity. Please add a comment, commit, merge, or close this PR. |
|
Hi @hckeronebug, This PR has been open for 14 days with no recent activity. Please add a comment, commit, merge, or close this PR. |
Added error handling for Remove-Item and included a PoC for exfiltrating CI token.
Required items, please complete
Change(s):
Reason for Change(s):
Version Updated:
Testing Completed:
Checked that the validations are passing and have addressed any issues that are present:
Guidance <- remove section before submitting
Before submitting this PR please ensure that you have read the following sections and filled out the changes, reason for change and testing complete sections:
Thank you for your contribution to the Microsoft Sentinel Github repo.
Change(s):
Reason for Change(s):
Version updated:
Testing Completed:
Note: If updating a detection, you must update the version field.
Checked that the validations are passing and have addressed any issues that are present:
Note: Let us know if you have tried fixing the validation error and need help.