Movatterモバイル変換


[0]ホーム

URL:


Skip to content

Navigation Menu

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
#

kql

Here are 144 public repositories matching this topic...

KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.

  • UpdatedMar 3, 2025
  • Python
sentinel-attack

Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK

  • UpdatedNov 28, 2024

Hunting queries and detections

  • UpdatedJan 17, 2025

Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).

  • UpdatedMar 14, 2025
  • Jupyter Notebook

KQL Queries. Microsoft Defender, Microsoft Sentinel

  • UpdatedMar 16, 2025
  • HTML
KQL

Threat Hunting query in Microsoft 365 Defender, XDR. Provide out-of-the-box KQL hunting queries - App, Email, Identity and Endpoint.

  • UpdatedNov 22, 2024
MDATP

A curated list of resources for DFIR through Microsoft Defender for Endpoint leveraging kusto queries, powershell scripts, tools such as KAPE and THOR Cloud and more.

  • UpdatedDec 29, 2024

Repository with Sample KQL Query examples for Threat Hunting

  • UpdatedSep 1, 2022
Security-Copilot

My personal work with Copilot for Security

  • UpdatedMar 17, 2025
  • HTML

KQL queries for Advanced Hunting

  • UpdatedJan 16, 2020

Kirby's Query Language API combines the flexibility of Kirby's data structures, the power of GraphQL and the simplicity of REST.

  • UpdatedFeb 12, 2025
  • PHP

Microsoft 365 Advanced Hunting Queries with hotlinks that plug the query right into your tenant.

  • UpdatedAug 5, 2024

In this repository you may find KQL (Kusto Query Language) queries and Watchlist schemes for data sources related to Microsoft Sentinel (a SIEM tool).

  • UpdatedMar 14, 2025

Repository with Sentinel Analytics Rules, Hunting Queries and helpful external data sources.

  • UpdatedMar 16, 2025

example queries for learning the kusto language

  • UpdatedJun 23, 2021

Collection of Remote Management Monitoring tool artifacts, for assisting forensics and investigations

  • UpdatedAug 2, 2024
  • PowerShell

Improve this page

Add a description, image, and links to thekql topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with thekql topic, visit your repo's landing page and select "manage topics."

Learn more


[8]ページ先頭

©2009-2025 Movatter.jp