KQL queries for Incident Response
☆14Oct 31, 2023Updated 2 years ago
Alternatives and similar repositories for kql_queries
Users that are interested in kql_queries are comparing it to the libraries listed below
Sorting:
- R3D SSH Hunter: The Ultimate SSH Key and Bad Guy Tracker☆12Nov 5, 2024Updated last year
- Visualize Microsoft Defender XDR process trees and security events☆33Aug 24, 2025Updated 6 months ago
- Config files for my GitHub profile.☆18Apr 8, 2025Updated 11 months ago
- Google Cloud Security Command Center to Azure Sentinel Connector☆19Jul 15, 2023Updated 2 years ago
- List of MurmurHash3 favicon hashes of widely used technologies by vendor to search with Shodan.☆36Apr 14, 2024Updated last year
- Card Payments Simulation Tool For Indie Devs : Core Card Switch Engine, Fraud Engine, ATM/POS GUI Simulator , Admin Dash (Real-time MSG …☆19Jun 15, 2025Updated 8 months ago
- msuserstats is a comprehensive Powershell tool to manage accounts from Microsoft Entra ID and Active Directory. It supports: a unified vi…☆43Mar 13, 2025Updated 11 months ago
- Code examples from my book and class, PowerShell for Systems Engineers.☆11Jan 6, 2023Updated 3 years ago
- A Docker-based development stack for Bedrock WordPress multisite, optimized for local development, source control, and CI/CD integration.☆14Jun 26, 2025Updated 8 months ago
- A small crappy script I wrote that converts the Sigma Windows Process Creation events to KQL via PySigma. Designed for CI/CD☆10Nov 7, 2023Updated 2 years ago
- Java DNS Post Exploitation Tool☆11Jul 21, 2024Updated last year
- A very basic app written in Javascript and packaged as a Docker image to be used as a demo when testing clustered deployments in ECS/EKS.☆11Jun 30, 2023Updated 2 years ago
- Sigma Queries turned into KQL for Defender using pysigma☆12Jun 20, 2024Updated last year
- Convert Confluence MIME exports (.doc) to clean Markdown☆34Jan 13, 2026Updated last month
- Class☆10Nov 10, 2020Updated 5 years ago
- SlideDecks from Meetups☆12Feb 23, 2026Updated 2 weeks ago
- Takes a software bill of materials and outputs provenance, and activity data from trustypkg.dev☆10May 19, 2025Updated 9 months ago
- Automated Phishing Tool☆11May 27, 2020Updated 5 years ago
- Visual automation with Backstop JS☆10Jan 22, 2026Updated last month
- Scan git repos for secrets using regex and entropy 🔑☆10Jun 18, 2020Updated 5 years ago
- Multi-protocol credential validation tool with spray and no-spray modes for penetration testing.☆14Jan 4, 2026Updated 2 months ago
- ☆11Dec 8, 2023Updated 2 years ago
- A repository of remark/rehype, Zod, Astro plugins and more☆18Feb 21, 2026Updated 2 weeks ago
- ☆11Dec 9, 2025Updated 3 months ago
- AWS security training tasks for your first projects☆12Nov 4, 2024Updated last year
- Automatically distribute GitHub Actions workflow across repositories.☆12Mar 1, 2026Updated last week
- This is a VxLAN PoC code for Talks: From Spoofing to Tunneling: New Red Team's Networking Techniques for Initial Access and Evasion☆28Jul 21, 2025Updated 7 months ago
- custom bloodhound queries and knowledge base☆12Apr 16, 2024Updated last year
- Threat Modeling with ATT&CK defines how to integreate MITRE ATT&CK® into your organization’s existing threat modeling methodology.☆12May 28, 2025Updated 9 months ago
- OAuch is an open-source security best practices and threats analyzer for OAuth 2.0 authorization server implementations☆13Sep 4, 2025Updated 6 months ago
- Privateer is a plugin-based framework for security & compliance evaluations.☆18Updated this week
- IoC Feed for security analysts etc.☆13Feb 1, 2023Updated 3 years ago
- This guidance focuses on the part of payments processing systems that post payments to recieving accounts. In this phase, inbound transac…☆21Sep 22, 2025Updated 5 months ago
- This is an inventory system TUI app written in Golang with tview package (it's an awesome app!)☆16Oct 25, 2024Updated last year
- Generate a 360 degree view of a user's permissions in Microsoft 365☆18Feb 5, 2026Updated last month
- Python for Security is the home of all open source Python projects that can integrate with Microsoft Technologies.☆13Jan 10, 2022Updated 4 years ago
- Certipy in Docker☆13Mar 28, 2024Updated last year
- A dark retro theme for Zola☆37Updated this week
- Turn a supported list of filetypes (e.g. .docx) into a markdown structured text file. Also optionally defangs indicators and extract text…☆12Feb 5, 2026Updated last month