☆63Apr 2, 2025Updated 11 months ago
Alternatives and similar repositories for RepositoriesSampleContent
Users that are interested in RepositoriesSampleContent are comparing it to the libraries listed below
Sorting:
- Sentinel Analytics Rule converter PowerShell module☆67Feb 24, 2026Updated 3 weeks ago
- Enable the automatic deployment of Azure Sentinel using code☆118May 3, 2022Updated 3 years ago
- Sentinel Threat Intelligence Upload Toolkit☆18Jul 15, 2024Updated last year
- The Azure Hyper-V Lab makes virtualization on Azure effortless, perfect for experimenting, learning, and building proof-of-concepts.☆15May 17, 2025Updated 10 months ago
- Export Microsoft Sentinel artifacts like Analytical Rules, Hunting Queries, Workbooks in order to support new feature Repositories CI/CD …☆59Sep 15, 2022Updated 3 years ago
- The Microsoft Sentinel Triage AssistanT (STAT) enables easy to create incident triage automation in Microsoft Sentinel☆277Jan 2, 2026Updated 2 months ago
- Deploying and Managing Azure Sentinel – Ninja style☆32Dec 9, 2020Updated 5 years ago
- This repository contains various public projects created by the owners of Hybrid Brothers☆21Nov 3, 2023Updated 2 years ago
- REST server that can analyze Kusto KQL queries against the Sentinel and Microsoft 365 Defender schemas.☆51Sep 22, 2025Updated 5 months ago
- In this repository you may find KQL (Kusto Query Language) queries and Watchlist schemes for data sources related to Microsoft Sentinel (…☆135Updated this week
- A platform for extracting and shipping security value from your data lake to Sentinel.☆35Sep 19, 2024Updated last year
- Hands-on lab workshop, Azure Defender for IoT☆14Feb 2, 2022Updated 4 years ago
- A collection of scripts to facilitate management of Microsoft Defender XDR products + Sentinel.☆31Nov 11, 2025Updated 4 months ago
- Misc. content for Microsoft Sentinel☆17Apr 12, 2024Updated last year
- A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 D…☆762Aug 28, 2025Updated 6 months ago
- Automatically generated Sysmon parser for Azure Sentinel☆18Jan 6, 2026Updated 2 months ago
- Cloud-native SIEM for intelligent security analytics for your entire enterprise.☆5,534Updated this week
- Powershell to read ETL file on an interval and convert it to an EVTX (so Windows Event Forwarding can 'subscribe')☆11May 16, 2017Updated 8 years ago
- ☆26Apr 1, 2022Updated 3 years ago
- Utilities for Microsoft Sentinel☆20Dec 7, 2025Updated 3 months ago
- This contains the contents needed to deploy a home lab in VirtualBox.☆18Jul 6, 2020Updated 5 years ago
- This repo aims to help you decipher the UAL from a Digital Forensics & Incident Response (DFIR) perspective. The UAL is the Microsoft 365…☆64May 12, 2024Updated last year
- GitHub action for validating Microsoft Sentinel detection rules☆14May 22, 2023Updated 2 years ago
- Community project to classify, identify and protect your privileges based on Enterprise Access Model (EAM)☆220Updated this week
- Dettectinator - The Python library to your DeTT&CT YAML files.☆118Jan 22, 2026Updated last month
- Azure Sentinel KQL☆471Jul 28, 2025Updated 7 months ago
- PowerShell module for Azure Sentinel☆233Aug 3, 2022Updated 3 years ago
- ☆14May 30, 2018Updated 7 years ago
- My useful KQL and Azure Monitor workbooks (Public)☆117Mar 13, 2026Updated last week
- Generates a detailed CSV file containing Sigma Rules statistics for each service or category, and each level, offering a holistic view of…☆10Dec 22, 2023Updated 2 years ago
- A themed UI kits with Dark Mode and OS specific controls☆10Mar 10, 2022Updated 4 years ago
- various tools for Microsoft Sentinel☆32Jun 26, 2025Updated 8 months ago
- Compiled executables of common crypto and encoding algorithms☆16Oct 3, 2023Updated 2 years ago
- MDE Quickstart is a battle-tested MDE policy set designed to be restored with Intune Backup & Restore☆65Dec 26, 2022Updated 3 years ago
- Contains research.splunk.com site code☆11Apr 10, 2024Updated last year
- A curated list of blogs, videos, tutorials, queries and anything else valuable to help you learn and master KQL and Microsoft Sentinel☆240Feb 8, 2023Updated 3 years ago
- A collection of ARM-based detections for Azure/AzureAD based TTPs☆90Dec 12, 2023Updated 2 years ago
- Content and collateral for the Microsoft Sentinel SOC 101 series☆207Feb 12, 2024Updated 2 years ago
- Welcome to the Microsoft Defender for Cloud community repository☆1,885Updated this week