Windows Defender ATP - Advanced Hunting Queries
☆22Apr 12, 2018Updated 8 years ago
Alternatives and similar repositories for WDATP-Advanced-Hunting
Users that are interested in WDATP-Advanced-Hunting are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Poison Ivy Appendix/Extras☆18Aug 21, 2013Updated 12 years ago
- A collection of YARA rules for public use. Built from information in intelligence profiles, dossiers and file work.☆18Sep 10, 2023Updated 2 years ago
- Advanced Hunting Queries for Microsoft Security Products☆108Jan 10, 2023Updated 3 years ago
- Miscellaneous Azure Sentinel files that don't fall into other categories.☆13Aug 23, 2021Updated 4 years ago
- PowerShell Scripts, Snippets, bare minmium ideas☆15Feb 5, 2026Updated 3 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Hunting Queries for Microsoft Defender Security Center https://docs.microsoft.com/en-us/windows/security/threat-protection/microsoft-defe…☆40Apr 8, 2021Updated 5 years ago
- PowerShell commands to export the Azure Sentinel Rule Templates to a CSV and to create the Rules from selected entries in the CSV file☆17Oct 31, 2024Updated last year
- Powershell to read ETL file on an interval and convert it to an EVTX (so Windows Event Forwarding can 'subscribe')☆11May 16, 2017Updated 9 years ago
- Defender XDR Advanced Hunting Queries (MDE, MDAV, Device Discovery)☆13Apr 20, 2026Updated last month
- A running list of Windows sources and the related event ids.☆19Aug 2, 2023Updated 2 years ago
- Defender Resource Hub☆31Apr 11, 2026Updated last month
- ☆14May 30, 2018Updated 7 years ago
- Javascript deobfuscation tool☆17Apr 6, 2018Updated 8 years ago
- ☆60Jul 18, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Miscellaneous stuff I create☆71Apr 21, 2026Updated 3 weeks ago
- Data Governance app for Splunk☆12Oct 19, 2023Updated 2 years ago
- ☆30Nov 11, 2024Updated last year
- Hints for the Kusto Detective Agency - Season 2☆10Aug 15, 2023Updated 2 years ago
- Detecting and Responding to Threats using Microsoft 365 Defender, published by Packt☆16Jul 10, 2023Updated 2 years ago
- ☆18Feb 25, 2026Updated 2 months ago
- Sentinel Analytics Rule converter PowerShell module☆69Feb 24, 2026Updated 2 months ago
- ASN Lookup Generator for Splunk☆10Jan 24, 2024Updated 2 years ago
- Small and highly portable detection tests based on MITRE's ATT&CK.☆11Jun 24, 2021Updated 4 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- KQL queries for Advanced Hunting☆176Jan 16, 2020Updated 6 years ago
- Sample queries for Advanced hunting in Microsoft 365 Defender☆2,065Feb 17, 2022Updated 4 years ago
- Automated Use Case Testing☆171May 1, 2018Updated 8 years ago
- Cyber Defence related kusto queries for use in Azure Sentinel and Defender advanced hunting☆69Apr 1, 2026Updated last month
- Set Operations App for Splunk☆10Mar 29, 2021Updated 5 years ago
- Actionable analytics designed to combat threats based on MITRE's ATT&CK.☆23Aug 21, 2019Updated 6 years ago
- Security diagnostic quick start guide. Identifying the best measures and establishing specific security procedures for your organization.☆11May 29, 2019Updated 6 years ago
- This repository is used to store the Azure Information Protection Deployment Acceleration Guide☆29May 31, 2019Updated 6 years ago
- JSON Tools Technology Add-On for Splunk☆10Mar 31, 2021Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆11Nov 13, 2024Updated last year
- multi-threaded script uses VirusTotal and AbuseIPDB APIs and generate an excel with all needed data☆10Mar 14, 2023Updated 3 years ago
- Microsoft Defender ATP Manageability and Maintenance scripts☆29Jun 12, 2023Updated 2 years ago
- ☆18Jul 13, 2022Updated 3 years ago
- A Splunk technology add-on for osquery☆14Sep 5, 2025Updated 8 months ago
- 👋 Hi, I’m Nitish Kumar @laymanstake. Working in Windows Infrastructure since almost two decades now. 👀 I’m interested in O365/ Azure/ S…☆12Jan 3, 2025Updated last year
- Splunk Add-on for PowerShell provides field extraction for PowerShell event logs.☆17Feb 1, 2021Updated 5 years ago