Oct. 16, 2023, 3:15 p.m. | /u/whatthe12234

cybersecurity www.reddit.com

We’re seeing an uptick in alerts in our SIEM tool for anonymous IP addresses. They’re supposed to be blocked by policy, but we’re getting alerts of successful sign in with anonymous IP’s.

Upon investigation, it’s been determined that these IPs are related to the iCloud Private Relay.

Is anyone else seeing these alerts in their SIEM tool? If so, what steps did you take in modifying the policy to prevent the creation of the alert?

addresses alerts anonymous apple apple icloud blocked cybersecurity icloud icloud private relay investigation ip addresses ips policy private private relay relay security security alerts siem sign tool

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Application Security Engineer - Enterprise Engineering

@ Meta | Bellevue, WA | Seattle, WA | New York City | Fremont, CA

Security Engineer

@ Retool | San Francisco, CA

Senior Product Security Analyst

@ Boeing | USA - Seattle, WA

Junior Governance, Risk and Compliance (GRC) and Operations Support Analyst

@ McKenzie Intelligence Services | United Kingdom - Remote

GRC Integrity Program Manager

@ Meta | Bellevue, WA | Menlo Park, CA | Washington, DC | New York City