Azure / Azure-Sentinel-BYOMLLinks
Azure-Sentinel-BYOML
☆12Updated 6 years ago
Alternatives and similar repositories for Azure-Sentinel-BYOML
Users that are interested in Azure-Sentinel-BYOML are comparing it to the libraries listed below
Sorting:
- ☆10Updated 5 years ago
- The Infosec Community Definitive Guide to Jupyter Notebooks☆129Updated 5 years ago
- A lab environment for learning about MSTICPy☆38Updated 2 years ago
- ☆65Updated last year
- Powershell Scripts to automatically deploy an image of a prebuilt VM (up-to-date and with pre-deployed tools and apps) to every region yo…☆18Updated 2 years ago
- Web-based sensor management suite☆20Updated 2 years ago
- Agentic Workflows Made Simple☆159Updated 8 months ago
- OSSEM Common Data Model☆56Updated 3 years ago
- A collection of notebooks built for defensive and offensive operations.☆77Updated 5 years ago
- AI-powered tool designed to help producing Threat Intelligence Mindmap.☆103Updated 6 months ago
- Bulk turn on Analytic rules in Azure Sentinel☆19Updated 4 years ago
- Sightings Ecosystem gives cyber defenders visibility into what adversaries actually do in the wild. With your help, we are tracking MITRE…☆37Updated 6 months ago
- Microsoft Sentinel, Defender for Endpoint - KQL Detection Packs☆54Updated 2 years ago
- The official Prelude SIEM GitHub of https://www.prelude-siem.org☆34Updated 9 years ago
- Advanced Hunting Queries for Microsoft Security Products☆108Updated 2 years ago
- A collection of ARM-based detections for Azure/AzureAD based TTPs☆89Updated last year
- Threat model for Azure Storage - Library of all the attack scenarios on Azure Storage, and how to mitigate them following a risk-based ap…☆59Updated 2 years ago
- Cloud-native SIEM for intelligent security analytics for your entire enterprise.☆20Updated 2 years ago
- 🚀 IRIS-SOAR: Modular SOAR (Security Orchestration, Automation, and Response) implementation in Python. Designed to complement DFIR-IRIS …☆11Updated last year
- REST server that can analyze Kusto KQL queries against the Sentinel and Microsoft 365 Defender schemas.☆44Updated 2 months ago
- ☆59Updated last year
- Threat Analytics Search Chrome Extension☆12Updated last year
- Microsoft Threat Intelligence☆198Updated this week
- Sharing Threat Hunting runbooks☆25Updated 6 years ago
- Tool to extract Sessions, MessageID(s) and find the emails belonging to MessageID(s). This script utilizes the MailItemsAccessed features…☆41Updated 5 years ago
- Active Response plugin. Osquery to execute wazuh/ossec active response plugins. You can write your own plugins, easy to plug☆11Updated 5 years ago
- Best practices in threat intelligence☆48Updated 3 years ago
- The idea is simply to save some quick notes that will make it easier for Splunk users to leverage KQL (Kusto), especially giving projects…☆44Updated 5 years ago
- Microsoft Sentinel SOC Operations☆262Updated last year
- KQL queries for Advanced Hunting☆176Updated 5 years ago