O3-Cyber / azure-security-survival-kit
☆64Updated 3 months ago
Related projects ⓘ
Alternatives and complementary repositories for azure-security-survival-kit
- ☆44Updated this week
- A collection of ARM-based detections for Azure/AzureAD based TTPs☆80Updated 11 months ago
- ThreatModel for Azure Storage - Library of all the attack scenarios on Azure Storage, and how to mitigate them following a risk-based app…☆57Updated last year
- Microsoft Entra ID App Audit Solution (AADAppAudit)☆80Updated 2 months ago
- Solution to deploy a Sentinel playground demo environment☆55Updated last year
- Repository with Sentinel Analytics Rules, Hunting Queries and helpful external data sources.☆69Updated this week
- Sharing my KQL queries for Azure Sentinel☆142Updated 3 months ago
- Workbooks for Azure Sentinel☆54Updated last year
- Docs and samples for privileged identity and access management in Microsoft Azure and Microsoft Entra.☆137Updated 3 weeks ago
- A cheatsheet containing AWS CloudTrail events that can be used for Incident Response purposes or Detection Engineering.☆62Updated 6 months ago
- ☆65Updated 2 years ago
- A list of Entra ID (Azure AD) Audit event names and the corresponding Microsoft Graph Request Uri☆26Updated last month
- ☆53Updated 4 months ago
- Programming Microsoft Sentinel book☆22Updated 11 months ago
- Nextdoor's Cloud Security Posture Management (CSPM) Evaluation Matrix☆58Updated last year
- Rapidly apply hundreds of security controls in Azure☆183Updated last year
- MDE Quickstart is a battle-tested MDE policy set designed to be restored with Intune Backup & Restore☆65Updated last year
- All slides from my meetup talks☆31Updated 5 months ago
- ☆26Updated last year
- Repository hosting a static list of Microsoft First party apps and Graph permissions that's updated daily☆86Updated this week
- Extensible Azure Security Tool - Documentation☆81Updated last year
- ☆29Updated last week
- An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and secur…☆115Updated last month
- Sentinel Analytics Rule converter PowerShell module☆53Updated this week
- Microsoft Sentinel related content☆33Updated last year
- A collection of Microsoft Sentinel workbooks and analytics rules.☆100Updated 9 months ago
- KQL example queries for working in Azure☆33Updated 3 months ago
- Assess Azure Security State☆36Updated 10 months ago
- Azure Activity Log Axe is a continually developing tool that simplifies the transactional log format provided by Microsoft. The tool leve…☆22Updated 2 months ago