KQL for Azure Resource Manager and AppID search
☆23Aug 15, 2024Updated last year
Alternatives and similar repositories for kql
Users that are interested in kql are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Random Powershell scripts☆13Feb 13, 2024Updated 2 years ago
- KQL Sentinel and Defender Detection and Hunting Queries.☆16Feb 24, 2026Updated 2 months ago
- ☆11Mar 29, 2022Updated 4 years ago
- Sharing my KQL queries for Azure Sentinel☆209Updated this week
- Microsoft Entra ID App Audit Solution (AADAppAudit)☆84Aug 28, 2024Updated last year
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- PowerShell module to help getting tokens using managed identities☆17Dec 29, 2024Updated last year
- KQL Detections for Microsoft Sentinel and Microsoft 365 Defender☆21Nov 15, 2024Updated last year
- Workflows for scheduled export of settings from an Azure AD tenant☆16Mar 3, 2026Updated 2 months ago
- MISP to Microsoft Defender integration☆17Feb 24, 2026Updated 2 months ago
- Automatic Microsoft Sentinel Deployment☆16Apr 1, 2025Updated last year
- Sentinel Threat Intelligence Upload Toolkit☆18Jul 15, 2024Updated last year
- ☆22Aug 29, 2023Updated 2 years ago
- Extensible Azure Security Tool - Documentation☆83Jun 1, 2023Updated 2 years ago
- A collection of Microsoft Sentinel workbooks and analytics rules.☆111Feb 8, 2024Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Azure AiTM Function PoC to phish Entra ID Credentials☆28Nov 21, 2025Updated 6 months ago
- Think of this PS-module as a helper for Microsoft Graph version-management, connectivity and data management using Microsoft Graph.☆15Apr 28, 2025Updated last year
- An automated deployment tool that creates instrumented Azure environments with vulnerable systems for simulating attacks and testing Micr…☆65Mar 30, 2026Updated last month
- MS Entra ID Protection Guidance☆22Apr 2, 2024Updated 2 years ago
- KQL queries for cyber defense and for solving daily issues☆55Jul 28, 2025Updated 9 months ago
- Collection of Microsoft Identity Threat Detection and Response resources.☆54May 1, 2026Updated 2 weeks ago
- PDump is a project for dumping leaked credentials from DEHASHED☆17Jan 21, 2024Updated 2 years ago
- Azure AD Security controls check.☆16Feb 25, 2023Updated 3 years ago
- A guide to using Azure Data Explorer and KQL for DFIR☆124May 16, 2022Updated 4 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Azure Feed Newsletters☆13Sep 23, 2023Updated 2 years ago
- Sharing presentation slides and workbook templates that can be useful to others to learn more about Azure Active Directory!☆21Aug 23, 2024Updated last year
- ☆92Jan 10, 2024Updated 2 years ago
- Tools for Microsoft cloud fans☆376Nov 26, 2024Updated last year
- A hackathon idea to hide sensitive information in the Azure Portal☆140Apr 2, 2026Updated last month
- ☆19Dec 18, 2024Updated last year
- A WDAC configuration repository with the sole intention of enriching MDE☆30Jun 18, 2025Updated 11 months ago
- You wonder how to manage your travelers ? In this scenario we describe how to manage them with Identity Governance and Conditional Access…☆11Mar 20, 2024Updated 2 years ago
- This repository is used by FalconForce to release parts of the internal tools used for maintaining, validating and automatically deployin…☆17Mar 10, 2023Updated 3 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- A Post-exploitation Toolset for Interacting with the Microsoft Graph API☆15Nov 16, 2023Updated 2 years ago
- Cyber Defence related kusto queries for use in Azure Sentinel and Defender advanced hunting☆69Apr 1, 2026Updated last month
- Share your own Graph PowerShell samples in the Discussions tab.☆80Jul 4, 2023Updated 2 years ago
- Discover a curated collection of scripts for Microsoft Azure and Microsoft 365 in this repository. Tailored for efficiency and automation…☆39Oct 21, 2025Updated 7 months ago
- Script and stuff for use in my blogposts☆18Feb 19, 2025Updated last year
- Azure AD Incident Response☆28Oct 8, 2021Updated 4 years ago
- In this repository you may find KQL (Kusto Query Language) queries and Watchlist schemes for data sources related to Microsoft Sentinel (…☆139Apr 24, 2026Updated 3 weeks ago