Sophos-Community / XDR_QueriesLinks
This hosts all queries created on the LD&R Forum
☆13Updated 11 months ago
Alternatives and similar repositories for XDR_Queries
Users that are interested in XDR_Queries are comparing it to the libraries listed below
Sorting:
- ☆39Updated 4 months ago
- Defender for Endpoint☆28Updated last year
- ☆50Updated last year
- Maintain Tier 0 users. This script take care all Tier 0 users are in the correct OU or in the default user container and add the Kerberos…☆65Updated 10 months ago
- Perform general security checks against AD environment☆66Updated 3 years ago
- ClientInspectorV2 - Unleashing the power of Azure LogAnalytics, Azure Data Collection Rules, Log Ingestion API by doing client inventory …☆25Updated 2 years ago
- Collect / retrieve Office365, AzureAD and DLP audit logs and output to PRTG, Azure Log Analytics Workspace, SQL, Graylog, Fluentd, and/or…☆118Updated last year
- Microsoft Defender Advanced Threat Protection☆48Updated 2 weeks ago
- PowerShell module for SentinelOne API☆69Updated 2 years ago
- This module allows the creation of password expiry emails for users, managers, administrators, and security according to defined template…☆157Updated 9 months ago
- The "Monash Enterprise Access Model" (MEAM) is a model for tiering Active Directory that builds heavily on the Microsoft Enterprise Acces…☆136Updated last year
- ☆62Updated last year
- M365 MDATP Live Response sample scripts☆82Updated last year
- Automation around Entra ID☆38Updated 6 months ago
- Sysmon configuration file templates with advanced event tracing and blocking☆41Updated 3 weeks ago
- A set of troubleshooting, diagnostic, and information utilities (and useful scripts) for Windows☆67Updated 5 months ago
- Powershell scripts to implement a Tier administration model in Active Directory☆31Updated 5 years ago
- MDE Tester is designed to help testing various features in Microsoft Defender for Endpoint.☆194Updated last year
- A list of Entra ID (Azure AD) Audit event names and the corresponding Microsoft Graph Request Uri☆36Updated last year
- A PowerShell script that automates the security assessment of Microsoft Active Directory environments.☆68Updated 3 years ago
- Repository hosting a static list of Microsoft First party apps and Graph permissions that's updated daily☆203Updated last week
- PowerShell Module for checking SPF, DKIM and DMARC-record.☆66Updated 2 weeks ago
- MDE Quickstart is a battle-tested MDE policy set designed to be restored with Intune Backup & Restore☆65Updated 3 years ago
- Root module for creating Tier Model / Delegation Model on Active Directory☆20Updated 5 months ago
- Microsoft Sentinel related content☆38Updated last year
- ☆13Updated 4 years ago
- Microsoft Active Directory (AD) Awesome List☆26Updated 11 months ago
- ☆83Updated this week
- MS Entra ID Protection Guidance☆22Updated last year
- PowerShell Module for managing Microsoft Defender Advanced Threat Protection☆75Updated 3 years ago