Repository for Software Certs for easy software blocking across corp environments, for example, using MDE IOC
☆67Apr 8, 2026Updated last week
Alternatives and similar repositories for SoftwareCertificates
Users that are interested in SoftwareCertificates are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Windows Hardening Powershell Scripts☆25Oct 3, 2025Updated 6 months ago
- Sentinel Threat Intelligence Upload Toolkit☆18Jul 15, 2024Updated last year
- Block abused TLDs in Tenant Allow BlockList☆15Jan 21, 2026Updated 2 months ago
- The purpose of this repository is to share KQL queries to help identify security misconfigurations, hunt for specific patterns, or detect…☆82Feb 10, 2026Updated 2 months ago
- KQL Queries. Microsoft Defender, Microsoft Sentinel☆197Mar 16, 2026Updated last month
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- This repo aims to help you decipher the UAL from a Digital Forensics & Incident Response (DFIR) perspective. The UAL is the Microsoft 365…☆64May 12, 2024Updated last year
- My personal work with Copilot for Security☆199Jun 27, 2025Updated 9 months ago
- Hints for the Kusto Detective Agency - Season 2☆10Aug 15, 2023Updated 2 years ago
- Ian Hanley's deceptively simple KQL queries.☆67Apr 3, 2026Updated last week
- Sample queries for Advanced hunting in Microsoft Defender ATP☆38Dec 19, 2021Updated 4 years ago
- Conditional Access Reporting☆29Apr 4, 2025Updated last year
- ☆42Sep 5, 2025Updated 7 months ago
- Implement a powerful Tiering Security Model in Microsoft Entra for your Cloud Administrator identities using Azure Automation.☆51Mar 11, 2026Updated last month
- some KQL Queries for Advanced Hunting☆76Apr 2, 2026Updated 2 weeks ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- My stuff regarding Copilot for Security☆12Jan 12, 2026Updated 3 months ago
- This project aims to bridge the gap between Microsoft Attack Surface Reduction (ASR) rules and MITRE ATT&CK by mapping ASR rules to their…☆29Nov 20, 2024Updated last year
- KQL Sentinel and Defender Detection and Hunting Queries.☆16Feb 24, 2026Updated last month
- ☆418Updated this week
- Automatic Microsoft Sentinel Deployment☆16Apr 1, 2025Updated last year
- Site to share several small PowerShell scripts built as a set of functions.☆24Jul 25, 2025Updated 8 months ago
- EasyPIM let you manage PIM Azure Resource, Entra Role and Groups settings and assignments with simplicity☆228Updated this week
- ☆12Mar 28, 2026Updated 2 weeks ago
- KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunt…☆1,682Updated this week
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- KQL example queries for working in Azure☆36Dec 1, 2025Updated 4 months ago
- Community project to classify, identify and protect your privileges based on Enterprise Access Model (EAM)☆237Mar 24, 2026Updated 3 weeks ago
- Threat Hunting query in Microsoft 365 Defender, XDR. Provide out-of-the-box KQL hunting queries - App, Email, Identity and Endpoint.☆489Nov 22, 2024Updated last year
- A prototype for implementing Azure Service Principal Impersonation using Azure Functions and Key Vault. This project demonstrates an appr…☆17Feb 26, 2025Updated last year
- In this repository you may find KQL (Kusto Query Language) queries and Watchlist schemes for data sources related to Microsoft Sentinel (…☆139Apr 9, 2026Updated last week
- Application Insights for PowerShell scripts and Modules☆12Jan 22, 2019Updated 7 years ago
- A curated list of resources for DFIR through Microsoft Defender for Endpoint leveraging kusto queries, powershell scripts, tools such as …☆456Feb 18, 2026Updated last month
- PowerShell module to help getting tokens using managed identities☆17Dec 29, 2024Updated last year
- KQL Queries☆34Mar 19, 2026Updated 3 weeks ago
- Serverless GPU API endpoints on Runpod - Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Microsoft 365 Advanced Hunting Queries with hotlinks that plug the query right into your tenant.☆133Feb 10, 2026Updated 2 months ago
- Scripts designed to automate and assist administrators with managing Entra Id☆14Mar 15, 2025Updated last year
- Microsoft Intune Custom Compliance☆42Mar 18, 2024Updated 2 years ago
- MDE Tester is designed to help testing various features in Microsoft Defender for Endpoint.☆194Feb 20, 2026Updated last month
- Content and collateral for the Microsoft Sentinel SOC 101 series☆207Feb 12, 2024Updated 2 years ago
- A collection of content for blue team professionals, designed to support both reactive and proactive cybersecurity measures of every aspe…☆33Apr 2, 2026Updated 2 weeks ago
- Repository with Sample KQL Query examples for Threat Hunting☆218Sep 1, 2022Updated 3 years ago