KQL for Azure Resource Manager and AppID search
☆23Aug 15, 2024Updated last year
Alternatives and similar repositories for kql
Users that are interested in kql are comparing it to the libraries listed below
Sorting:
- Random Powershell scripts☆13Feb 13, 2024Updated 2 years ago
- PowerShell module to help getting tokens using managed identities☆17Dec 29, 2024Updated last year
- ☆11Mar 29, 2022Updated 3 years ago
- Azure Feed Newsletters☆13Sep 23, 2023Updated 2 years ago
- Think of this PS-module as a helper for Microsoft Graph version-management, connectivity and data management using Microsoft Graph.☆14Apr 28, 2025Updated 10 months ago
- KQL Sentinel and Defender Detection and Hunting Queries.☆15Updated this week
- Workflows for scheduled export of settings from an Azure AD tenant☆15Dec 15, 2025Updated 2 months ago
- GitHub action for validating Microsoft Sentinel detection rules☆14May 22, 2023Updated 2 years ago
- Microsoft Entra ID App Audit Solution (AADAppAudit)☆84Aug 28, 2024Updated last year
- Automatic Microsoft Sentinel Deployment☆16Apr 1, 2025Updated 11 months ago
- KQL Detections for Microsoft Sentinel and Microsoft 365 Defender☆21Nov 15, 2024Updated last year
- A Post-exploitation Toolset for Interacting with the Microsoft Graph API☆15Nov 16, 2023Updated 2 years ago
- This repository is used by FalconForce to release parts of the internal tools used for maintaining, validating and automatically deployin…☆17Mar 10, 2023Updated 2 years ago
- Sentinel Threat Intelligence Upload Toolkit☆18Jul 15, 2024Updated last year
- Azure AD Security controls check.☆16Feb 25, 2023Updated 3 years ago
- Script and stuff for use in my blogposts☆18Feb 19, 2025Updated last year
- MS Entra ID Protection Guidance☆22Apr 2, 2024Updated last year
- ☆19Sep 3, 2021Updated 4 years ago
- Extensible Azure Security Tool - Documentation☆83Jun 1, 2023Updated 2 years ago
- A hackathon idea to hide sensitive information in the Azure Portal☆131Oct 11, 2024Updated last year
- ☆22Aug 29, 2023Updated 2 years ago
- Collection of Microsoft Identity Threat Detection and Response resources.☆52Feb 1, 2026Updated last month
- Sharing presentation slides and workbook templates that can be useful to others to learn more about Azure Active Directory!☆21Aug 23, 2024Updated last year
- KQL queries for cyber defense and for solving daily issues☆55Jul 28, 2025Updated 7 months ago
- ☆90Jan 10, 2024Updated 2 years ago
- Azure AD Incident Response☆27Oct 8, 2021Updated 4 years ago
- ☆21Dec 11, 2025Updated 2 months ago
- Azure Resource Inventory .NET Tool - Inventories and documents Azure Tenant resources☆32Updated this week
- This sample demonstrates how to achieve Blue/Green Deployments in Azure Container Apps using Azure pipelines☆28Feb 14, 2026Updated 2 weeks ago
- Cyber Defence related kusto queries for use in Azure Sentinel and Defender advanced hunting☆68Dec 7, 2025Updated 2 months ago
- Docs and samples for privileged identity and access management in Microsoft Azure and Microsoft Entra.☆184Feb 19, 2026Updated last week
- Discover a curated collection of scripts for Microsoft Azure and Microsoft 365 in this repository. Tailored for efficiency and automation…☆35Oct 21, 2025Updated 4 months ago
- ☆67Apr 13, 2023Updated 2 years ago
- You wonder how to manage your travelers ? In this scenario we describe how to manage them with Identity Governance and Conditional Access…☆11Mar 20, 2024Updated last year
- ☆13Jan 30, 2025Updated last year
- Manage Azure and Microsoft 365 with the Microsoft Graph PowerShell SDK!☆80Aug 29, 2024Updated last year
- ☆63Jan 13, 2026Updated last month
- In this repository you may find KQL (Kusto Query Language) queries and Watchlist schemes for data sources related to Microsoft Sentinel (…☆134Dec 18, 2025Updated 2 months ago
- Hunting Queries for Defender ATP☆83Dec 14, 2025Updated 2 months ago