rcegan / ConvertSigmaRepo2KQL
A small crappy script I wrote that converts the Sigma Windows Process Creation events to KQL via PySigma. Designed for CI/CD
☆8Updated last year
Alternatives and similar repositories for ConvertSigmaRepo2KQL
Users that are interested in ConvertSigmaRepo2KQL are comparing it to the libraries listed below
Sorting:
- Hunting Queries for Defender ATP☆81Updated last month
- ☆72Updated 6 months ago
- Velociraptor Server hosted in Azure App Service☆42Updated last week
- Sigma detection rules for hunting with the threathunting-keywords project☆55Updated 2 months ago
- Cyber Defence related kusto queries for use in Azure Sentinel and Defender advanced hunting☆65Updated last month
- ☆11Updated 2 years ago
- Cumulonimbus-UAL_Extractor is a PowerShell based tool created by the Tesorion CERT team to help gather the Unified Audit Logging out of a…☆19Updated last year
- A collection of various SIEM rules relating to malware family groups.☆66Updated 11 months ago
- Generates a detailed CSV file containing Sigma Rules statistics for each service or category, and each level, offering a holistic view of…☆10Updated last year