Audit file system on WebApps and log to Blob
Audit file system to detect malicious file changing.
Recently we experience intrusion into a Wordpress site on WebApp.
There was a malicious "favicon.ico" icon file.
We are investigating a feature to detect these type of malicious manipulation.
Currently exploring all files at every job is needed to detect, but it is not efficient because we update this site NOT frequently.
If WebApps have auditing file system and log to Blob,
we can create custom alert rules with Azure Functions easily.
This is also an alternative way for implementing antimalware feature: https://feedback.azure.com/forums/169385-web-apps/suggestions/17919064-antimalware-feature-on-web-apps-app-service
Thanks for the feature request, definitely a valid request. We have no plans right now but we will leave this on the backlog.