rapid7 / insightvm-api-examplesLinks
Created by Ivan Quintanilla via the GitHub Connector
☆20Updated 11 months ago
Alternatives and similar repositories for insightvm-api-examples
Users that are interested in insightvm-api-examples are comparing it to the libraries listed below
Sorting:
- InsightVM helpful SQL queries☆77Updated 11 months ago
- Microsoft 365 Advanced Hunting Queries with hotlinks that plug the query right into your tenant.☆131Updated 7 months ago
- Microsoft Sentinel, Defender for Endpoint - KQL Detection Packs☆55Updated 2 years ago
- ☆45Updated last year
- A PowerShell script that automates the security assessment of Microsoft Active Directory environments.☆68Updated 3 years ago
- Content Repo for Demystifying KQL Tutorial Series☆72Updated last year
- Security Scripts and Sources for daily usage.☆72Updated 2 weeks ago
- KQL queries for cyber defense and for solving daily issues☆54Updated 6 months ago
- The Office 365 Extractor is a tool that allows for complete and reliable extraction of the Unified Audit Log (UAL)☆266Updated 4 years ago
- MISP to Sentinel integration☆79Updated 2 months ago
- Conference presentations☆60Updated 3 months ago
- Tool for creating reports on Entra ID Role Assignments☆100Updated last year
- A collection of Microsoft Sentinel workbooks and analytics rules.☆111Updated 2 years ago
- This repo aims to help you decipher the UAL from a Digital Forensics & Incident Response (DFIR) perspective. The UAL is the Microsoft 365…☆63Updated last year
- A guide to using Azure Data Explorer and KQL for DFIR☆124Updated 3 years ago
- MAES: M365 Analyzer & Extractor Suite Po☆33Updated 3 weeks ago
- Sample queries for Advanced hunting in Microsoft Defender ATP☆38Updated 4 years ago
- An automated deployment tool that creates instrumented Azure environments with vulnerable systems for simulating attacks and testing Micr…☆61Updated 6 months ago
- ADXFlowmaster helps SecOps teams Threat Hunt suspicious network traffic inside & outside of Azure.☆40Updated last year
- Advanced Hunting Queries for Microsoft Security Products☆108Updated 3 years ago
- ☆30Updated 9 months ago
- The Azure Active Directory Incident Response PowerShell module provides a number of tools, developed by the Azure Active Directory Produc…☆452Updated 2 years ago
- Notes on responding to security breaches relating to Azure AD☆120Updated 3 years ago
- Repository with Sentinel Analytics Rules, Hunting Queries and helpful external data sources.☆137Updated this week
- A collection of ARM-based detections for Azure/AzureAD based TTPs☆89Updated 2 years ago
- Repository of SentinelOne Deep Visibility queries.☆135Updated 4 years ago
- Tool to extract Sessions, MessageID(s) and find the emails belonging to MessageID(s). This script utilizes the MailItemsAccessed features…☆41Updated 5 years ago
- Protect your data in minutes !☆126Updated last year
- Simple hunting script for suspicious M365 OAuth Apps☆320Updated 4 months ago
- PowerShell-based Automation of Defender for Endpoint☆184Updated 7 months ago