☆63Apr 2, 2025Updated 10 months ago
Alternatives and similar repositories for RepositoriesSampleContent
Users that are interested in RepositoriesSampleContent are comparing it to the libraries listed below
Sorting:
- Sentinel Analytics Rule converter PowerShell module☆65Updated this week
- Export Microsoft Sentinel artifacts like Analytical Rules, Hunting Queries, Workbooks in order to support new feature Repositories CI/CD …☆59Sep 15, 2022Updated 3 years ago
- Deploying and Managing Azure Sentinel – Ninja style☆32Dec 9, 2020Updated 5 years ago
- Sentinel Threat Intelligence Upload Toolkit☆18Jul 15, 2024Updated last year
- The Microsoft Sentinel Triage AssistanT (STAT) enables easy to create incident triage automation in Microsoft Sentinel☆277Jan 2, 2026Updated last month
- This repository contains various public projects created by the owners of Hybrid Brothers☆21Nov 3, 2023Updated 2 years ago
- Enable the automatic deployment of Azure Sentinel using code☆117May 3, 2022Updated 3 years ago
- In this repository you may find KQL (Kusto Query Language) queries and Watchlist schemes for data sources related to Microsoft Sentinel (…☆134Dec 18, 2025Updated 2 months ago
- ☆31Sep 4, 2023Updated 2 years ago
- GitHub action for validating Microsoft Sentinel detection rules☆14May 22, 2023Updated 2 years ago
- A platform for extracting and shipping security value from your data lake to Sentinel.☆35Sep 19, 2024Updated last year
- A few XDR Scripts☆22Mar 19, 2025Updated 11 months ago
- The Azure Hyper-V Lab makes virtualization on Azure effortless, perfect for experimenting, learning, and building proof-of-concepts.☆15May 17, 2025Updated 9 months ago
- This contains the contents needed to deploy a home lab in VirtualBox.☆18Jul 6, 2020Updated 5 years ago
- REST server that can analyze Kusto KQL queries against the Sentinel and Microsoft 365 Defender schemas.☆51Sep 22, 2025Updated 5 months ago
- Pluralsight Course - Spring Cloud Fundamentals - Configuration Repository☆15Jul 11, 2022Updated 3 years ago
- Utilities for Microsoft Sentinel☆20Dec 7, 2025Updated 2 months ago
- Community project to classify, identify and protect your privileges based on Enterprise Access Model (EAM)☆204Feb 19, 2026Updated last week
- Misc. content for Microsoft Sentinel☆18Apr 12, 2024Updated last year
- A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 D…☆758Aug 28, 2025Updated 6 months ago
- A curated list of blogs, videos, tutorials, queries and anything else valuable to help you learn and master KQL and Microsoft Sentinel☆239Feb 8, 2023Updated 3 years ago
- PowerShell module for Azure Sentinel☆233Aug 3, 2022Updated 3 years ago
- A collection of scripts to facilitate management of Microsoft Defender XDR products + Sentinel.☆31Nov 11, 2025Updated 3 months ago
- Velociraptor Server hosted in Azure App Service☆59Jun 4, 2025Updated 8 months ago
- Azure Sentinel KQL☆471Jul 28, 2025Updated 7 months ago
- A unified CLI and library for managing architectural artifacts (RFCs, ADRs, Decomposition Plans) with plugins, impact analysis, and healt…☆29Dec 15, 2025Updated 2 months ago
- Abusing Reddit API to host the C2 traffic, since most of the blue-team members use Reddit, it might be a great way to make the traffic lo…☆24Jan 23, 2023Updated 3 years ago
- Sentinel Logic Apps, Playbooks and Workbooks to automate enrichment, incident analysis and more.☆115Jan 18, 2026Updated last month
- This repo aims to help you decipher the UAL from a Digital Forensics & Incident Response (DFIR) perspective. The UAL is the Microsoft 365…☆64May 12, 2024Updated last year
- ☆36Feb 12, 2026Updated 2 weeks ago
- ☆26Apr 1, 2022Updated 3 years ago
- A collection of Microsoft Sentinel workbooks and analytics rules.☆111Feb 8, 2024Updated 2 years ago
- Docs and samples for privileged identity and access management in Microsoft Azure and Microsoft Entra.☆184Feb 19, 2026Updated last week
- Repository for public site hosting graph permissions☆33Updated this week
- Workbooks for Azure Sentinel☆63Aug 14, 2023Updated 2 years ago
- CTFd plugin allowing for individual Docker containers per team☆26Jun 27, 2022Updated 3 years ago
- ☆30May 1, 2025Updated 9 months ago
- Threat Hunting query in Microsoft 365 Defender, XDR. Provide out-of-the-box KQL hunting queries - App, Email, Identity and Endpoint.☆484Nov 22, 2024Updated last year
- KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunt…☆1,638Feb 22, 2026Updated last week