Windows Defender ATP - Advanced Hunting Queries
☆22Apr 12, 2018Updated 8 years ago
Alternatives and similar repositories for WDATP-Advanced-Hunting
Users that are interested in WDATP-Advanced-Hunting are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Poison Ivy Appendix/Extras☆18Aug 21, 2013Updated 12 years ago
- A collection of YARA rules for public use. Built from information in intelligence profiles, dossiers and file work.☆18Sep 10, 2023Updated 2 years ago
- ☆14Feb 22, 2021Updated 5 years ago
- Advanced Hunting Queries for Microsoft Security Products☆108Jan 10, 2023Updated 3 years ago
- Miscellaneous Azure Sentinel files that don't fall into other categories.☆13Aug 23, 2021Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Hunting Queries for Microsoft Defender Security Center https://docs.microsoft.com/en-us/windows/security/threat-protection/microsoft-defe…☆40Apr 8, 2021Updated 5 years ago
- Additional Resources to improve Customer Experience with Azure Advanced Threat Protection☆22Jun 12, 2023Updated 3 years ago
- PowerShell commands to export the Azure Sentinel Rule Templates to a CSV and to create the Rules from selected entries in the CSV file☆17Oct 31, 2024Updated last year
- Powershell to read ETL file on an interval and convert it to an EVTX (so Windows Event Forwarding can 'subscribe')☆11May 16, 2017Updated 9 years ago
- Defender XDR Advanced Hunting Queries (MDE, MDAV, Device Discovery)☆13Jun 10, 2026Updated 2 weeks ago
- A running list of Windows sources and the related event ids.☆19Aug 2, 2023Updated 2 years ago
- Defender Resource Hub☆32Updated this week
- A curated list of awesome YARA rules, tools, and people.☆33Oct 26, 2023Updated 2 years ago
- ☆14May 30, 2018Updated 8 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Javascript deobfuscation tool☆17Apr 6, 2018Updated 8 years ago
- ☆60Jul 18, 2024Updated last year
- Miscellaneous stuff I create☆72Apr 21, 2026Updated 2 months ago
- Data Governance app for Splunk☆12Oct 19, 2023Updated 2 years ago
- ☆30Nov 11, 2024Updated last year
- Plugin based information gathering library☆28May 8, 2026Updated last month
- Detecting and Responding to Threats using Microsoft 365 Defender, published by Packt☆16Jul 10, 2023Updated 2 years ago
- ☆18Feb 25, 2026Updated 4 months ago
- Sentinel Analytics Rule converter PowerShell module☆70Feb 24, 2026Updated 4 months ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- ☆12Oct 29, 2025Updated 8 months ago
- ASN Lookup Generator for Splunk☆10Jan 24, 2024Updated 2 years ago
- Small and highly portable detection tests based on MITRE's ATT&CK.☆11Jun 24, 2021Updated 5 years ago
- KQL queries for Advanced Hunting☆176Jan 16, 2020Updated 6 years ago
- Sample queries for Advanced hunting in Microsoft 365 Defender☆2,078Feb 17, 2022Updated 4 years ago
- Automated Use Case Testing☆172May 1, 2018Updated 8 years ago
- Cyber Defence related kusto queries for use in Azure Sentinel and Defender advanced hunting☆69Apr 1, 2026Updated 2 months ago
- Malware - Machine Learning☆11Mar 24, 2018Updated 8 years ago
- Set Operations App for Splunk☆10Mar 29, 2021Updated 5 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Actionable analytics designed to combat threats based on MITRE's ATT&CK.☆24Aug 21, 2019Updated 6 years ago
- Security diagnostic quick start guide. Identifying the best measures and establishing specific security procedures for your organization.☆11May 29, 2019Updated 7 years ago
- This repository is used to store the Azure Information Protection Deployment Acceleration Guide☆29May 31, 2019Updated 7 years ago
- ☆11Nov 13, 2024Updated last year
- multi-threaded script uses VirusTotal and AbuseIPDB APIs and generate an excel with all needed data☆10Mar 14, 2023Updated 3 years ago
- Microsoft Defender ATP Manageability and Maintenance scripts☆29Jun 12, 2023Updated 3 years ago
- ☆18Jul 13, 2022Updated 3 years ago