☆24Jul 9, 2026Updated last month
Alternatives and similar repositories for XDRConverter
Users that are interested in XDRConverter are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Microsoft Sentinel SIEM Log Source Analyzer☆29Jun 10, 2026Updated 2 months ago
- ☆71Apr 20, 2026Updated 4 months ago
- KustoHawk is a lightweight incident triage and response tool designed for effective incident response in Microsoft Defender XDR and Micro…☆158Apr 1, 2026Updated 4 months ago
- This project contains a **test executable** specifically designed to trigger incidents in **Microsoft Defender for Endpoint (MDE)**. It…☆14Jul 20, 2025Updated last year
- ☆49Jul 15, 2026Updated last month
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- My Azure Sentinel Ninja ideas, thoughts and contributions☆25Aug 14, 2026Updated 2 weeks ago
- ☆15Feb 12, 2026Updated 6 months ago
- Manage and maintain Defender XDR custom collection configuration☆39Nov 19, 2025Updated 9 months ago
- An automation framework for deploying Microsoft Sentinel environments using pipelines. This project combines infrastructure-as-code (Bice…☆74Updated this week
- This operational dashboard correlates data from Microsoft Defender for Endpoint/Server (MDE) and Azure Monitor Agent (AMA) to identify co…☆18May 13, 2026Updated 3 months ago
- ☆84Feb 4, 2026Updated 6 months ago
- A PowerShell module for the Defender XDR portal☆137Aug 12, 2026Updated 2 weeks ago
- ☆50Jul 29, 2026Updated 3 weeks ago
- MAES: M365 Analyzer & Extractor Suite Po☆36Aug 8, 2026Updated 3 weeks ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- A production-ready, enterprise-grade MDR framework that transforms chaotic security alerts into structured, actionable intelligence.☆25Feb 14, 2026Updated 6 months ago
- KQLIntel is a browser-based tool that uses LLMs to convert threat intelligence reports into actionable Kusto Query Language (KQL) queries…☆31Aug 4, 2025Updated last year
- This tool is designed to assist you in analyzing issues related to Defender for Endpoint on your local endpoint. It offers a centralized …☆107Updated this week
- Visualize Microsoft Defender XDR process trees and security events☆33Aug 24, 2025Updated last year
- Velociraptor Server hosted in Azure App Service☆59Jun 4, 2025Updated last year
- The purpose of this repository is to share KQL queries to help identify security misconfigurations, hunt for specific patterns, or detect…☆83Jul 11, 2026Updated last month
- A cross-platform tool to find traces of old SIDs remaining in LDAP objects of the Active Directory☆26Jun 29, 2025Updated last year
- A curated list of resources for DFIR through Microsoft Defender for Endpoint leveraging kusto queries, powershell scripts, tools such as …☆469Feb 18, 2026Updated 6 months ago
- Automated security investigation tool using Microsoft MCP Servers, GitHub Copilot, Python Modules and custom copilot-instructions.☆243Updated this week
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Everything you need to prepare for the Microsoft 365 Certified: Endpoint Administrator Associate!☆27Dec 16, 2023Updated 2 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Sep 18, 2018Updated 7 years ago
- Production-ready KQL queries for Microsoft Defender XDR and Microsoft Sentinel. Focused on Threat Hunting, Detection Engineering, and MIT…☆175Updated this week
- Python script to automatically create sigma rules from The hive observables☆25Mar 17, 2019Updated 7 years ago
- A small crappy script I wrote that converts the Sigma Windows Process Creation events to KQL via PySigma. Designed for CI/CD☆10Nov 7, 2023Updated 2 years ago
- Community project to classify, identify and protect your privileges based on Enterprise Access Model (EAM)☆302Jun 24, 2026Updated 2 months ago
- ☆20Sep 27, 2024Updated last year
- ☆92Aug 8, 2026Updated 2 weeks ago
- KQL Queries. Microsoft Defender, Microsoft Sentinel☆207Jun 29, 2026Updated last month
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Interactive PowerShell framework for testing WMI, COM, LOLBAS, and persistence techniques☆131Dec 28, 2025Updated 8 months ago
- Public SOA modules and information☆53Jul 24, 2026Updated last month
- Discover gaps in Entra Conditional Access policies before attackers do☆136Jun 8, 2026Updated 2 months ago
- Drone and UAV Digital Forensic☆20Apr 27, 2026Updated 4 months ago
- Ian Hanley's deceptively simple KQL queries.☆70Apr 10, 2026Updated 4 months ago
- ☆441Updated this week
- A BloodHound collector written in Go that discovers Linux and SSH attack paths. Outputs OpenGraph JSON and integrates with existing Sharp…☆95Jul 16, 2026Updated last month