jkerai1 / SoftwareCertificatesView external linksLinks
Repository for Software Certs for easy software blocking across corp environments, for example, using MDE IOC
☆64Feb 7, 2026Updated last week
Alternatives and similar repositories for SoftwareCertificates
Users that are interested in SoftwareCertificates are comparing it to the libraries listed below
Sorting:
- Sentinel Threat Intelligence Upload Toolkit☆18Jul 15, 2024Updated last year
- Block abused TLDs in Tenant Allow BlockList☆14Jan 21, 2026Updated 3 weeks ago
- KQL Queries. Microsoft Defender, Microsoft Sentinel☆194Dec 22, 2025Updated last month
- Ian Hanley's deceptively simple KQL queries.☆68Dec 27, 2025Updated last month
- ☆39Sep 5, 2025Updated 5 months ago
- My stuff regarding Copilot for Security☆12Jan 12, 2026Updated last month
- Sample queries for Advanced hunting in Microsoft Defender ATP☆38Dec 19, 2021Updated 4 years ago
- some KQL Queries for Advanced Hunting☆54Jan 15, 2026Updated 3 weeks ago
- In this repository you may find KQL (Kusto Query Language) queries and Watchlist schemes for data sources related to Microsoft Sentinel (…☆134Dec 18, 2025Updated last month
- EasyPIM let you manage PIM Azure Resource, Entra Role and Groups settings and assignments with simplicity☆219Jan 12, 2026Updated last month
- ☆12Feb 9, 2025Updated last year
- Hints for the Kusto Detective Agency - Season 2☆10Aug 15, 2023Updated 2 years ago
- Site to share several small PowerShell scripts built as a set of functions.☆24Jul 25, 2025Updated 6 months ago
- Application Insights for PowerShell scripts and Modules☆12Jan 22, 2019Updated 7 years ago
- Cmdlets for capturing Windows Events☆14Mar 11, 2022Updated 3 years ago
- Implement a powerful Tiering Security Model in Microsoft Entra for your Cloud Administrator identities using Azure Automation.☆51Feb 18, 2025Updated 11 months ago
- An automated deployment tool that creates instrumented Azure environments with vulnerable systems for simulating attacks and testing Micr…☆61Jul 27, 2025Updated 6 months ago
- Threat Hunting query in Microsoft 365 Defender, XDR. Provide out-of-the-box KQL hunting queries - App, Email, Identity and Endpoint.☆484Nov 22, 2024Updated last year
- KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunt…☆1,634Updated this week
- This project aims to bridge the gap between Microsoft Attack Surface Reduction (ASR) rules and MITRE ATT&CK by mapping ASR rules to their…☆29Nov 20, 2024Updated last year
- ☆12Jul 15, 2022Updated 3 years ago
- Scripts designed to automate and assist administrators with managing Entra Id☆14Mar 15, 2025Updated 10 months ago
- Hardware performance counter tool for Windows OS☆17Sep 4, 2018Updated 7 years ago
- Microsoft Intune Custom Compliance☆40Mar 18, 2024Updated last year
- Microsoft 365 Advanced Hunting Queries with hotlinks that plug the query right into your tenant.☆132Updated this week
- Cyber Defence related kusto queries for use in Azure Sentinel and Defender advanced hunting☆68Dec 7, 2025Updated 2 months ago
- Declarative Agent for Microsoft Copilot that searches the Microsoft 365 Roadmap.☆58Jan 19, 2026Updated 3 weeks ago
- Automatic Microsoft Sentinel Deployment☆16Apr 1, 2025Updated 10 months ago
- Repository with Sample KQL Query examples for Threat Hunting☆217Sep 1, 2022Updated 3 years ago
- A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 D…☆754Aug 28, 2025Updated 5 months ago
- KQL example queries for working in Azure☆36Dec 1, 2025Updated 2 months ago
- ☆36Nov 11, 2025Updated 3 months ago
- ☆46Feb 3, 2025Updated last year
- A collection of Microsoft Sentinel workbooks and analytics rules.☆111Feb 8, 2024Updated 2 years ago
- ☆42Oct 11, 2023Updated 2 years ago
- ☆67Jan 20, 2026Updated 3 weeks ago
- A prototype for implementing Azure Service Principal Impersonation using Azure Functions and Key Vault. This project demonstrates an appr…☆17Feb 26, 2025Updated 11 months ago
- Windows EDR agent in Rust. ETW telemetry → Sigma/YARA detection → ECS alerts. User-mode, open-source, high-performance.☆57Feb 4, 2026Updated last week
- Code included as part of the MustLearnKQL blog series☆1,146Jan 30, 2026Updated 2 weeks ago