maartengoet / KQL
KQL queries
☆11Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for KQL
- A WDAC configuration repository with the sole intention of enriching MDE☆27Updated last year
- Azure AD Incident Response☆24Updated 3 years ago
- ☆18Updated 5 months ago
- ☆40Updated 3 years ago
- A Windows PowerShell & PowerShell Core Module to calculate a CVSS3 Score based on a Vector string☆12Updated last year
- Automation around Entra ID☆34Updated 4 months ago
- A list of Entra ID (Azure AD) Audit event names and the corresponding Microsoft Graph Request Uri☆26Updated last month
- ☆14Updated last year
- Tier0 (Tier Zero) Account discovery for ActiveDirectory Security☆16Updated 6 years ago
- Sharing presentation slides and workbook templates that can be useful to others to learn more about Azure Active Directory!☆20Updated 2 months ago
- ☆14Updated 3 years ago
- KQL for Azure Resource Manager and AppID search☆22Updated 3 months ago
- MS Entra ID Protection Guidance☆20Updated 7 months ago
- This repository is for a beginners PowerShell training course I am holding in central Missouri.☆20Updated 7 years ago
- Solution to deploy a Sentinel playground demo environment☆55Updated last year
- ☆14Updated 3 years ago
- KQL example queries for working in Azure☆33Updated 3 months ago
- Microsoft Sentinel related content☆33Updated last year
- A few scripts I put together to send and receive data from an Azure Log Analytics workspace leveraging the Azure Monitor HTTP Data Collec…☆23Updated last year
- Presentations from Conferences☆26Updated 2 months ago
- ☆17Updated 3 years ago
- ☆40Updated last year
- Check you Sentinel environment using Pester infrastructure tests☆26Updated last year
- The cActiveDirectorySecurity module contains PowerShell Functions which are designed to report on and manipulate Access Control Lists on …☆8Updated 6 years ago
- ☆30Updated last year
- System Tray Tool for WDAC☆27Updated this week
- ☆13Updated 2 years ago