Automated security investigation tool using Microsoft MCP Servers, GitHub Copilot, Python Modules and custom copilot-instructions.
☆243Aug 28, 2026Updated this week
Alternatives and similar repositories for security-investigator
Users that are interested in security-investigator are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Share Information about Microsoft Security Products☆135Updated this week
- A schema-aware dataset and Claude AI skill for Microsoft Defender XDR Advanced Hunting.☆36May 6, 2026Updated 3 months ago
- An automation framework for deploying Microsoft Sentinel environments using pipelines. This project combines infrastructure-as-code (Bice…☆74Updated this week
- Response MCP server for Agentic SOC☆21Feb 3, 2026Updated 6 months ago
- ☆71Apr 20, 2026Updated 4 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- My Azure Sentinel Ninja ideas, thoughts and contributions☆25Aug 14, 2026Updated 2 weeks ago
- MCP to help Defenders Detection Engineer Harder and Smarter☆475Jun 16, 2026Updated 2 months ago
- Miscellaneous stuff I create☆75Updated this week
- Community project to classify, identify and protect your privileges based on Enterprise Access Model (EAM)☆302Jun 24, 2026Updated 2 months ago
- Sentinel Recon Tools Workbook☆14Aug 24, 2022Updated 4 years ago
- The Microsoft Sentinel Triage AssistanT (STAT) enables easy to create incident triage automation in Microsoft Sentinel☆290Jan 2, 2026Updated 7 months ago
- ☆92Aug 8, 2026Updated 2 weeks ago
- KQL Queries. Microsoft Defender, Microsoft Sentinel☆927Aug 14, 2026Updated 2 weeks ago
- A production-ready, enterprise-grade MDR framework that transforms chaotic security alerts into structured, actionable intelligence.☆25Feb 14, 2026Updated 6 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- PowerShell-based Automation of Defender for Endpoint☆197Jul 3, 2025Updated last year
- Ian Hanley's deceptively simple KQL queries.☆70Apr 10, 2026Updated 4 months ago
- Threat modeling and AI-reasoning vulnerability detection harness for Claude Code — STRIDE + AI + MAESTRO☆89Aug 13, 2026Updated 2 weeks ago
- KustoHawk is a lightweight incident triage and response tool designed for effective incident response in Microsoft Defender XDR and Micro…☆158Apr 1, 2026Updated 4 months ago
- A mirror image of my detection rules☆165Aug 21, 2026Updated last week
- ☆38Mar 2, 2026Updated 5 months ago
- A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID☆676Jul 6, 2026Updated last month
- A collection of scripts to facilitate management of Microsoft Defender XDR products + Sentinel.☆31Nov 11, 2025Updated 9 months ago
- Sentinel Assessment Tool, designed to help SOC teams and detection engineers get a clear view of their Microsoft Sentinel and Microsoft D…☆28Mar 11, 2026Updated 5 months ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- ☆24Jul 9, 2026Updated last month
- Sharing my KQL queries for Azure Sentinel☆225Aug 4, 2026Updated 3 weeks ago
- PowerShell tool for streamlined Microsoft Defender Advanced Hunting query management with GitHub Copilot integration☆20Updated this week
- Production-ready KQL queries for Microsoft Defender XDR and Microsoft Sentinel. Focused on Threat Hunting, Detection Engineering, and MIT…☆175Updated this week
- ☆37Aug 21, 2026Updated last week
- AI-Agentic Threat Intelligence - 39 collectors, 7 AI agents, 3-link proof chain, D1-D5 exposure scoring☆68Mar 16, 2026Updated 5 months ago
- Mapping of open-source detection rules and atomic tests.☆215Jul 15, 2026Updated last month
- ☆84Feb 4, 2026Updated 6 months ago
- Curated Microsoft Security skills for AI agents - Defender, Sentinel, Entra, Purview, Intune, Security Copilot☆168Jun 18, 2026Updated 2 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- ☆18Feb 25, 2026Updated 6 months ago
- Sentinel Analytics Rule converter PowerShell module☆71Feb 24, 2026Updated 6 months ago
- This repository contains various public projects created by the owners of Hybrid Brothers☆21Nov 3, 2023Updated 2 years ago
- Sentinel Threat Intelligence Upload Toolkit☆18Jul 15, 2024Updated 2 years ago
- Azure Sentinel KQL☆477Jul 28, 2025Updated last year
- Vigil: the open source AI SOC (agentic SOC). 13 specialized AI agents, 30+ MCP integrations, 7,200+ detection rules. Apache 2.0.☆266Updated this week
- Microsoft Sentinel SIEM Log Source Analyzer☆29Jun 10, 2026Updated 2 months ago