Windows Defender ATP - Advanced Hunting Queries
☆22Apr 12, 2018Updated 8 years ago
Alternatives and similar repositories for WDATP-Advanced-Hunting
Users that are interested in WDATP-Advanced-Hunting are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A collection of YARA rules for public use. Built from information in intelligence profiles, dossiers and file work.☆18Sep 10, 2023Updated 2 years ago
- ☆14Feb 22, 2021Updated 5 years ago
- Miscellaneous Azure Sentinel files that don't fall into other categories.☆13Aug 23, 2021Updated 4 years ago
- PowerShell Scripts, Snippets, bare minmium ideas☆15Feb 5, 2026Updated 5 months ago
- Hunting Queries for Microsoft Defender Security Center https://docs.microsoft.com/en-us/windows/security/threat-protection/microsoft-defe…☆40Apr 8, 2021Updated 5 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Additional Resources to improve Customer Experience with Azure Advanced Threat Protection☆22Jun 12, 2023Updated 3 years ago
- PowerShell commands to export the Azure Sentinel Rule Templates to a CSV and to create the Rules from selected entries in the CSV file☆17Oct 31, 2024Updated last year
- Defender XDR Advanced Hunting Queries (MDE, MDAV, Device Discovery)☆13Jul 1, 2026Updated 2 weeks ago
- Powershell to read ETL file on an interval and convert it to an EVTX (so Windows Event Forwarding can 'subscribe')☆11May 16, 2017Updated 9 years ago
- A running list of Windows sources and the related event ids.☆19Aug 2, 2023Updated 2 years ago
- A curated list of awesome YARA rules, tools, and people.☆33Oct 26, 2023Updated 2 years ago
- Defender Resource Hub☆32Jul 1, 2026Updated 2 weeks ago
- ☆14May 30, 2018Updated 8 years ago
- Javascript deobfuscation tool☆17Apr 6, 2018Updated 8 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Data Governance app for Splunk☆12Oct 19, 2023Updated 2 years ago
- ☆60Jul 18, 2024Updated 2 years ago
- Sentinel Analytics Rule converter PowerShell module☆71Feb 24, 2026Updated 4 months ago
- ☆30Nov 11, 2024Updated last year
- ASN Lookup Generator for Splunk☆10Jan 24, 2024Updated 2 years ago
- Hints for the Kusto Detective Agency - Season 2☆10Aug 15, 2023Updated 2 years ago
- Automated Use Case Testing☆172May 1, 2018Updated 8 years ago
- KQL queries for Advanced Hunting☆176Jan 16, 2020Updated 6 years ago
- Cyber Defence related kusto queries for use in Azure Sentinel and Defender advanced hunting☆69Apr 1, 2026Updated 3 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Sample queries for Advanced hunting in Microsoft 365 Defender☆2,083Feb 17, 2022Updated 4 years ago
- Malware - Machine Learning☆11Mar 24, 2018Updated 8 years ago
- ☆12Oct 29, 2025Updated 8 months ago
- Set Operations App for Splunk☆10Mar 29, 2021Updated 5 years ago
- This repository is used to store the Azure Information Protection Deployment Acceleration Guide☆29May 31, 2019Updated 7 years ago
- Security diagnostic quick start guide. Identifying the best measures and establishing specific security procedures for your organization.☆11May 29, 2019Updated 7 years ago
- multi-threaded script uses VirusTotal and AbuseIPDB APIs and generate an excel with all needed data☆10Mar 14, 2023Updated 3 years ago
- A Splunk technology add-on for osquery☆14Sep 5, 2025Updated 10 months ago
- Splunk Stuffs!☆14Oct 14, 2023Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Splunk Add-on for PowerShell provides field extraction for PowerShell event logs.☆17Feb 1, 2021Updated 5 years ago
- MISP to Splunk Enterprise Security Theat Intelligence Framework Integration☆14Jul 11, 2023Updated 3 years ago
- Code samples for SQL Server Discovery using the Microsoft Assessment and Planning (MAP) toolkit☆11Dec 9, 2020Updated 5 years ago
- Web app that provides basic navigation and annotation of ATT&CK matrices☆17Nov 7, 2020Updated 5 years ago
- IOC matching for incident responders, threat hunters, detection engineers, and security engineers.☆19May 28, 2024Updated 2 years ago
- Add-on for ingesting DMARC aggregate reports into Splunk☆15Dec 5, 2022Updated 3 years ago
- ☆18Jul 13, 2022Updated 4 years ago