Sophos-Community / XDR_Queries
This hosts all queries created on the LD&R Forum
☆11Updated last month
Alternatives and similar repositories for XDR_Queries:
Users that are interested in XDR_Queries are comparing it to the libraries listed below
- ☆27Updated 7 months ago
- ☆41Updated last year
- PowerShell module for SentinelOne API☆28Updated 4 years ago
- Automation around Entra ID☆35Updated 4 months ago
- This tool is designed to assist you in analyzing issues related to Defender for Endpoint on your local endpoint. It offers a centralized …☆55Updated this week
- The purpose of this repository is to share KQL queries to help identify security misconfigurations, hunt for specific patterns, or detect…☆25Updated last week
- ☆44Updated 2 weeks ago
- Little PowerShell module to extract PowerShell scripts that no longer exists on disk but were run and are still in Event Logs.☆40Updated 4 years ago
- The Invoke-TrimarcADChecks.ps1 PowerShell script is designed to gather data from a single domain AD forest based on our similar checks pe…☆50Updated last year
- PowerShell Module for managing Microsoft Defender Advanced Threat Protection☆71Updated 2 years ago
- PowerShell module for SentinelOne API☆65Updated last year
- ClientInspectorV2 - Unleashing the power of Azure LogAnalytics, Azure Data Collection Rules, Log Ingestion API by doing client inventory …☆25Updated last year
- Defender for Endpoint☆27Updated 8 months ago
- Sophos Central PowerShell module☆10Updated last year
- ☆21Updated last week
- Repository for Software Certs for easy software blocking across corp environments, for example, using MDE IOC☆36Updated last week
- Perform general security checks against AD environment☆67Updated 3 years ago
- MDE Quickstart is a battle-tested MDE policy set designed to be restored with Intune Backup & Restore☆66Updated 2 years ago
- CIS & Azure Security Center Hardening recommendations implemented in PowerShell DSC from Azure Automation☆33Updated 3 years ago
- Sentinel Threat Intelligence Upload Toolkit☆13Updated 8 months ago
- Misc. content for Microsoft Sentinel☆18Updated 11 months ago
- AppLocker hardening policies☆25Updated 6 years ago
- ☆48Updated 8 months ago
- ☆13Updated 3 years ago
- Powershell scripts to implement a Tier administration model in Active Directory☆28Updated 4 years ago
- PowerShell for Active Directory, Defender XDR, Entra ID, Exchange Server, Microsoft 365, Windows, and more! ✌️☆73Updated this week
- ☆59Updated last year
- Sharing presentation slides and workbook templates that can be useful to others to learn more about Azure Active Directory!☆20Updated 7 months ago
- Hunting Queries for Defender ATP☆81Updated 2 weeks ago
- ☆18Updated 10 months ago