SecureHats / security-copilot
This GitHub repository contains lessons for developing Microsoft Security CoPilot plugins
☆18Updated 9 months ago
Alternatives and similar repositories for security-copilot:
Users that are interested in security-copilot are comparing it to the libraries listed below
- Microsoft Entra ID App Audit Solution (AADAppAudit)☆82Updated 5 months ago
- Solution to deploy a Sentinel playground demo environment☆55Updated last year
- Sentinel Recon Tools Workbook☆13Updated 2 years ago
- Check you Sentinel environment using Pester infrastructure tests☆29Updated last year
- ☆11Updated 2 years ago
- ☆55Updated 7 months ago
- ☆44Updated last month
- KQL for Azure Resource Manager and AppID search☆23Updated 6 months ago
- Extensible Azure Security Tool - Documentation☆81Updated last year
- Assess Azure Security State☆36Updated last year
- ☆17Updated last year
- A list of Entra ID (Azure AD) Audit event names and the corresponding Microsoft Graph Request Uri☆27Updated 4 months ago
- ☆24Updated last month
- ☆41Updated 10 months ago
- ☆23Updated 3 weeks ago
- A collection of ARM-based detections for Azure/AzureAD based TTPs☆83Updated last year
- ☆30Updated this week
- ADXFlowmaster helps SecOps teams Threat Hunt suspicious network traffic inside & outside of Azure.☆31Updated 3 months ago
- ☆65Updated 3 years ago
- Repository with supporting materials for Invictus Academy/Training☆42Updated last month
- KQL example queries for working in Azure☆32Updated 6 months ago
- KQL queries for cyber defense and for solving daily issues☆48Updated 3 weeks ago
- Microsoft Sentinel related content☆36Updated 3 weeks ago
- Everything about Microsoft Cloud Security!☆53Updated 7 months ago
- Links and guidance related to the return on mitigation report in the Microsoft Digital Defense Report☆27Updated last year
- Tool for creating reports on Entra ID Role Assignments☆91Updated 10 months ago
- A series of PowerShell scripts to automate the assessment of Azure IaaS security☆17Updated 3 months ago
- Michael Melone's Kusto Query library☆19Updated last year
- ☆51Updated 2 weeks ago
- MDE Quickstart is a battle-tested MDE policy set designed to be restored with Intune Backup & Restore☆66Updated 2 years ago