9 results found Sort:

KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.
Created 2022-05-30
436 commits to main branch, last one 7 days ago
94
772
bsd-3-clause
55
Hunting queries and detections
Created 2020-08-04
100 commits to main branch, last one about a month ago
Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).
Created 2020-11-02
30 commits to main branch, last one 2 months ago
MDATP
This repository has been archived (exclude archived)
Created 2019-06-15
208 commits to master branch, last one 7 months ago
Microsoft 365 Advanced Hunting Queries with hotlinks that plug the query right into your tenant.
Created 2021-08-13
140 commits to main branch, last one 7 months ago
Collection of Remote Management Monitoring tool artifacts, for assisting forensics and investigations
Created 2023-10-17
85 commits to main branch, last one 7 months ago
5
37
apache-2.0
2
ASR Configurator, Essentials and Atomic Testing
Created 2023-11-16
66 commits to main branch, last one 4 months ago
Repository for Software Certs for easy software blocking across corp environments, for example, using MDE IOC
Created 2023-02-13
2,267 commits to main branch, last one 13 hours ago
Microsoft Intune Custom Compliance
Created 2024-03-17
6 commits to main branch, last one 11 months ago