ugurkocde / KQL_Intune
☆82Updated last year
Alternatives and similar repositories for KQL_Intune:
Users that are interested in KQL_Intune are comparing it to the libraries listed below
- ☆55Updated last week
- MDE Quickstart is a battle-tested MDE policy set designed to be restored with Intune Backup & Restore☆66Updated 2 years ago
- Additional resources to improve customer experience with Microsoft Defender for Identity☆103Updated 2 weeks ago
- Defender for Endpoint☆17Updated last year
- ☆36Updated last week
- This tool is designed to assist you in analyzing issues related to Defender for Endpoint on your local endpoint. It offers a centralized …☆55Updated last month
- Community project to classify, identify and protect your privileges based on Enterprise Access Model (EAM)☆154Updated last month
- ☆51Updated 3 months ago
- A collection of Microsoft Sentinel workbooks and analytics rules.☆105Updated last year
- PowerShell-based Automation of Defender for Endpoint☆57Updated this week
- This repository contains a wide array of KQL Queries ready for you to easily copy, paste, and execute within Intune.☆99Updated 2 months ago
- Workbooks for Azure Sentinel☆58Updated last year
- ☆256Updated last week
- This repository contains a comprehensive set of Conditional Access (CA) policies and PowerShell management tools for Microsoft Entra ID (…☆84Updated last month
- Microsoft Defender Advanced Threat Protection☆44Updated 6 months ago
- ☆50Updated last month
- ☆18Updated last year
- ☆33Updated 3 weeks ago
- Various tools used to monitor and troubleshoot Azure Sentinel data☆30Updated 6 months ago
- ☆149Updated last week
- Share your own Graph PowerShell samples in the Discussions tab.☆80Updated last year
- This module will create a Microsoft 365 Test Environment☆101Updated 2 months ago
- M365 MDATP Live Response sample scripts☆69Updated 6 months ago
- Conditional Access Baseline - December 2022☆87Updated 2 years ago
- KQL Queries. Microsoft Defender, Microsoft Sentinel☆155Updated 3 weeks ago
- Microsoft Logic Apps flows☆54Updated 2 months ago
- ☆59Updated last year
- ConditionalAccessIQ streamlines this process by providing automatic version control, change tracking, and visual comparisons of your Cond…☆38Updated 3 weeks ago
- Sharing my KQL queries for Azure Sentinel☆169Updated 3 weeks ago
- This repo aims to help you decipher the UAL from a Digital Forensics & Incident Response (DFIR) perspective. The UAL is the Microsoft 365…☆58Updated 11 months ago