aprakash13's starred repositories

Stargazers:1433Issues:0Issues:0

dfiq

DFIQ is a collection of investigative questions and the approaches for answering them

Language:PythonLicense:Apache-2.0Stargazers:227Issues:0Issues:0

Conferences

Conference presentation slides

Stargazers:956Issues:0Issues:0

SecurityResearcher-Note

Cover various security approaches to attack techniques and also provides new discoveries about security breaches.

Stargazers:361Issues:0Issues:0

ircapabilities

Incident Response Hierarchy of Needs

Stargazers:424Issues:0Issues:0

Hunting-Queries-Detection-Rules

KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.

Language:PythonLicense:BSD-3-ClauseStargazers:996Issues:0Issues:0

Sentinel_KQL

In this repository you may find KQL (Kusto Query Language) queries and Watchlist schemes for data sources related to Microsoft Sentinel (a SIEM tool).

License:MITStargazers:91Issues:0Issues:0
Language:YARALicense:Apache-2.0Stargazers:497Issues:0Issues:0

KQL

Threat Hunting query in Microsoft 365 Defender, XDR. Provide out-of-the-box KQL hunting queries - App, Email, Identity and Endpoint.

Stargazers:393Issues:0Issues:0

awesome-detection-engineering

Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation of detective controls with the goal of proactively identifying malicious or unauthorized activity before it negatively impacts an individual or an organization.

License:CC0-1.0Stargazers:550Issues:0Issues:0

KQL

Michael Melone's Kusto Query library

Stargazers:17Issues:0Issues:0

protections-artifacts

Elastic Security detection content for Endpoint

Language:YARALicense:NOASSERTIONStargazers:869Issues:0Issues:0

awesome-kql-sentinel

A curated list of blogs, videos, tutorials, queries and anything else valuable to help you learn and master KQL and Microsoft Sentinel

Stargazers:190Issues:0Issues:0

kql-for-dfir

A guide to using Azure Data Explorer and KQL for DFIR

Stargazers:85Issues:0Issues:0

Microsoft-Defender-for-Cloud

Welcome to the Microsoft Defender for Cloud community repository

Language:PowerShellLicense:MITStargazers:1610Issues:0Issues:0

validate-detections

GitHub action for validating Microsoft Sentinel detection rules

Language:PowerShellLicense:MITStargazers:10Issues:0Issues:0

KQL

Kusto Query Language

Stargazers:349Issues:0Issues:0

msticpy

Microsoft Threat Intelligence Security Tools

Language:PythonLicense:NOASSERTIONStargazers:1698Issues:0Issues:0

FalconFriday

Hunting queries and detections

License:BSD-3-ClauseStargazers:652Issues:0Issues:0

MustLearnKQL

Code included as part of the MustLearnKQL blog series

License:MITStargazers:891Issues:0Issues:0

system-design-interview

System design interview for IT companies

Stargazers:21044Issues:0Issues:0

Sentinel-Queries

Collection of KQL queries

License:MITStargazers:1287Issues:0Issues:0

Microsoft-Sentinel-SecOps

Microsoft Sentinel SOC Operations

Language:PowerShellLicense:MITStargazers:229Issues:0Issues:0
Language:PythonLicense:NOASSERTIONStargazers:1772Issues:0Issues:0

AzureSentinelKQLScripts

Various tools used to monitor and troubleshoot Azure Sentinel data

License:MITStargazers:27Issues:0Issues:0

Detection-Ideas-Rules

Detection Ideas & Rules repository.

Stargazers:178Issues:0Issues:0

PowerSploit

PowerSploit - A PowerShell Post-Exploitation Framework

Language:PowerShellLicense:NOASSERTIONStargazers:11466Issues:0Issues:0

Azure-Sentinel-Notebooks

Interactive Azure Sentinel Notebooks provides security insights and actions to investigate anomalies and hunt for malicious behaviors.

Language:Jupyter NotebookLicense:MITStargazers:524Issues:0Issues:0

advmlthreatmatrix

Adversarial Threat Landscape for AI Systems

Stargazers:1021Issues:0Issues:0

interview

Everything you need to prepare for your technical interview

License:WTFPLStargazers:17518Issues:0Issues:0