Microsoft Sentinel SIEM Log Source Analyzer
☆29Sep 7, 2026Updated this week
Alternatives and similar repositories for log-horizon
Users that are interested in log-horizon are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Detection rules and threat hunting queries in Defender XDR and Azure Sentinel☆17Mar 13, 2026Updated 5 months ago
- ☆24Jul 9, 2026Updated 2 months ago
- KQL Detections for Microsoft Sentinel and Microsoft 365 Defender☆21Nov 15, 2024Updated last year
- REST server that can analyze Kusto KQL queries against the Sentinel and Microsoft 365 Defender schemas.☆54Jul 27, 2026Updated last month
- KustoHawk is a lightweight incident triage and response tool designed for effective incident response in Microsoft Defender XDR and Micro…☆158Apr 1, 2026Updated 5 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Manage and maintain Defender XDR custom collection configuration☆39Nov 19, 2025Updated 9 months ago
- A repo to hold KQL queries as part of my 100 days of KQL effort.☆19Aug 5, 2026Updated last month
- Defender Resource Hub☆32Jul 1, 2026Updated 2 months ago
- ☆84Feb 4, 2026Updated 7 months ago
- 200+ behavioral detection rules for Kunai (Linux eBPF). Covers MITRE ATT&CK with 92 techniques across execve, connect, DNS, file ops, ptr…☆22Mar 30, 2026Updated 5 months ago
- Tier0 (Tier Zero) Account discovery for ActiveDirectory Security☆17Apr 11, 2018Updated 8 years ago
- A PowerShell module for the Defender XDR portal☆138Aug 12, 2026Updated last month
- Collection of Microsoft Identity Threat Detection and Response resources.☆54Sep 1, 2026Updated last week
- Discover gaps in Entra Conditional Access policies before attackers do☆137Jun 8, 2026Updated 3 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Sentinel Analytics Rule converter PowerShell module☆71Feb 24, 2026Updated 6 months ago
- Collection of different Azure/Entra focused solutions (Deployable templates, Function Apps, etc)☆81Apr 12, 2026Updated 5 months ago
- A schema-aware dataset and Claude AI skill for Microsoft Defender XDR Advanced Hunting.☆36May 6, 2026Updated 4 months ago
- KQLIntel is a browser-based tool that uses LLMs to convert threat intelligence reports into actionable Kusto Query Language (KQL) queries…☆31Aug 4, 2025Updated last year
- ☆71Apr 20, 2026Updated 4 months ago
- Repository with Sentinel Analytics Rules, Hunting Queries and helpful external data sources.☆148Sep 3, 2026Updated last week
- KQL Queries☆43Updated this week
- An automated deployment tool that creates instrumented Azure environments with vulnerable systems for simulating attacks and testing Micr…☆68Mar 30, 2026Updated 5 months ago
- Repository where I hold random detection and threat hunting queries that I come up with based on different sources of information (or eve…☆290Jun 23, 2026Updated 2 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Microsoft Sentinel related content☆38Jan 22, 2025Updated last year
- Automatically deploying Mythic C2 in Azure using Terraform☆25Jul 3, 2026Updated 2 months ago
- MDE/MDI Defender setup for Ludus☆62Jul 30, 2026Updated last month
- ADXFlowmaster helps SecOps teams Threat Hunt suspicious network traffic inside & outside of Azure.☆39Oct 30, 2024Updated last year
- Repository for Software Certs for easy software blocking across corp environments, for example, using MDE IOC☆89Updated this week
- The standard Go net.Conn interface using Azure Storage services as the transport layer.☆32Aug 15, 2026Updated 3 weeks ago
- Copilot for Security Tools☆19Apr 19, 2024Updated 2 years ago
- ☆27Updated this week
- SOCAutomators Substack blog companion — threat research, DBIR analysis, and security operations content☆20Jun 3, 2026Updated 3 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- KQL for Azure Resource Manager and AppID search☆23Aug 15, 2024Updated 2 years ago
- Velociraptor Server hosted in Azure App Service☆60Jun 4, 2025Updated last year
- A repository of Sysmon For Linux configuration modules☆17Oct 14, 2021Updated 4 years ago
- Share Information about Microsoft Security Products☆147Updated this week
- ☆19Dec 18, 2024Updated last year
- This operational dashboard correlates data from Microsoft Defender for Endpoint/Server (MDE) and Azure Monitor Agent (AMA) to identify co…☆18Sep 4, 2026Updated last week
- This tool clusters malware samples and extracts core shared artefacts by combining static analysis, optional dynamic analysis, and progre…☆25Apr 11, 2026Updated 5 months ago