Sentinel Assessment Tool, designed to help SOC teams and detection engineers get a clear view of their Microsoft Sentinel and Microsoft Defender detection coverage against MITRE ATT&CK.
☆28Mar 11, 2026Updated 6 months ago
Alternatives and similar repositories for Sentinel-Assessment-Tool
Users that are interested in Sentinel-Assessment-Tool are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Sentinel Threat Intelligence Upload Toolkit☆18Jul 15, 2024Updated 2 years ago
- This operational dashboard correlates data from Microsoft Defender for Endpoint/Server (MDE) and Azure Monitor Agent (AMA) to identify co…☆18Sep 4, 2026Updated last week
- Share Information about Microsoft Security Products☆147Updated this week
- My Azure Sentinel Ninja ideas, thoughts and contributions☆25Updated this week
- KustoHawk is a lightweight incident triage and response tool designed for effective incident response in Microsoft Defender XDR and Micro…☆158Apr 1, 2026Updated 5 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Sentinel Logic Apps, Playbooks and Workbooks to automate enrichment, incident analysis and more.☆124Jan 18, 2026Updated 7 months ago
- KQL Sentinel and Defender Detection and Hunting Queries.☆16Aug 17, 2026Updated 3 weeks ago
- Miscellaneous stuff I create☆76Aug 26, 2026Updated 2 weeks ago
- This powerbi dashboards will help the Security team to analyze KBs, delivered monthly by Microsoft☆14Mar 9, 2022Updated 4 years ago
- An Obsidian-Based Second Brain for CyberSecurity Analysts and Professionals☆61Feb 18, 2026Updated 6 months ago
- ☆84Feb 4, 2026Updated 7 months ago
- An automated deployment tool that creates instrumented Azure environments with vulnerable systems for simulating attacks and testing Micr…☆68Mar 30, 2026Updated 5 months ago
- sKaleQL is an opinionated template repository for managing, executing, and organizing Kusto Query Language (KQL) queries against Azure Lo…☆21May 20, 2025Updated last year
- Links and guidance related to the return on mitigation report in the Microsoft Digital Defense Report☆29Oct 10, 2023Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Automated security investigation tool using Microsoft MCP Servers, GitHub Copilot, Python Modules and custom copilot-instructions.☆245Updated this week
- Tool to check the CloudTrail configuration and the services where trails are sent, to detect potential attacks to CloudTrail logging.☆13May 25, 2024Updated 2 years ago
- ☆19Dec 18, 2024Updated last year
- ☆60Jul 19, 2023Updated 3 years ago
- Repository for Software Certs for easy software blocking across corp environments, for example, using MDE IOC☆89Updated this week
- ☆21Jul 16, 2025Updated last year
- This Grafana dashboard offers a centralized view of Azure orphan resources that can be safely removed to reduce the overall cost of ownin…☆18Oct 22, 2024Updated last year
- KQL Queries. Microsoft Defender, Microsoft Sentinel☆208Jun 29, 2026Updated 2 months ago
- A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID☆679Jul 6, 2026Updated 2 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Ian Hanley's deceptively simple KQL queries.☆70Apr 10, 2026Updated 5 months ago
- Enumerate Microsoft service access from a refresh token☆25Apr 1, 2026Updated 5 months ago
- Top passwords as per HaveIBeenPwned☆35Mar 12, 2026Updated 6 months ago
- Collection of different Azure/Entra focused solutions (Deployable templates, Function Apps, etc)☆81Apr 12, 2026Updated 5 months ago
- ADAttributeHound is an OpenGraph extension for BloodHound that exports Active Directory custom attributes as node properties.☆22Jun 18, 2026Updated 2 months ago
- This is a tutorial for a data-secure home surveillance system with notifications to mobile devices.☆13Mar 14, 2022Updated 4 years ago
- ☆18Jul 13, 2022Updated 4 years ago
- ☆50Updated this week
- A production-ready, enterprise-grade MDR framework that transforms chaotic security alerts into structured, actionable intelligence.☆26Feb 14, 2026Updated 6 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A collection of practical SOC investigation playbooks for common security alerts including brute-force attacks, phishing incidents, suspi…☆20Mar 15, 2026Updated 5 months ago
- This repo aims to help you decipher the UAL from a Digital Forensics & Incident Response (DFIR) perspective. The UAL is the Microsoft 365…☆67May 12, 2024Updated 2 years ago
- Sophos Central PowerShell module☆12Jul 11, 2023Updated 3 years ago
- ResearchDev - XDR & SIEM Detection☆66Apr 16, 2025Updated last year
- PowerShell tool for streamlined Microsoft Defender Advanced Hunting query management with GitHub Copilot integration☆21Aug 31, 2026Updated last week
- KQL Queries☆43Updated this week
- Block abused TLDs in Tenant Allow BlockList☆16Updated this week