rootsecdev / Presentations
Presentations from Conferences
☆25Updated this week
Related projects: ⓘ
- ☆48Updated last year
- This is for my crappy (but hopefully useful) MDE and Sentinel KQL queries! #KQLThePlanet☆10Updated 11 months ago
- Expose a lot of MDE telemetry that is not easily accessible in any searchable form☆93Updated 2 months ago
- Sentinel Logic Apps/Playbooks to automate enrichment, incident analysis and more.☆67Updated last month
- ☆11Updated last year
- ☆46Updated 10 months ago
- Fun GUI for Group3rs output log☆25Updated last year
- ☆42Updated 3 months ago
- ☆39Updated 3 years ago
- ☆40Updated 11 months ago
- Sharing presentation slides and workbook templates that can be useful to others to learn more about Azure Active Directory!☆20Updated 3 weeks ago
- A script designed to test passwords against user accounts within an Active Directory environment, offering customizable Account Lockout T…☆14Updated last year
- M365/Azure adversary simulation tool designed to simulate adversary techniques and generate attack telemetry.☆110Updated 4 months ago
- Collection of scripts/resources/ideas for attack surface reduction and additional logging to enable better threat hunting on Windows endp…☆38Updated 5 months ago
- Powershell Script to enumerate AzureAD and output good data☆14Updated 10 months ago
- ☆22Updated 2 years ago
- The ultimate solution for remotely deploying Crowdstrike sensors quickly and discreetly on any other EDR platform.☆21Updated 3 weeks ago
- Hunting Queries for Defender ATP☆70Updated last week
- ☆40Updated 5 months ago
- ☆99Updated last year
- Reportly is an AzureAD user activity report tool.☆88Updated last year
- Azure AiTM Function PoC to phish Entra ID Credentials☆17Updated 5 months ago
- The Invoke-TrimarcADChecks.ps1 PowerShell script is designed to gather data from a single domain AD forest based on our similar checks pe…☆35Updated last year
- ASR Configurator, Essentials and Atomic Testing☆32Updated 3 weeks ago
- A tiny tool to find and fix common misconfigurations in Active Directory-integrated DNS☆76Updated 2 weeks ago
- Cyber Defence related kusto queries for use in Azure Sentinel and Defender advanced hunting☆54Updated this week
- A WDAC configuration repository with the sole intention of enriching MDE☆27Updated last year
- ResearchDev - XDR & SIEM Detection☆61Updated 5 months ago
- Repository that contains random short projects like write-ups, PowerShell scripts, and more.☆24Updated last month
- This project aims to bridge the gap between Microsoft Attack Surface Reduction (ASR) rules and MITRE ATT&CK by mapping ASR rules to their…☆23Updated 2 weeks ago