Hunting-Queries-Detection-Rules
modelfirst
Our great sponsors
Hunting-Queries-Detection-Rules | modelfirst | |
---|---|---|
7 | 4 | |
997 | 1 | |
- | - | |
9.3 | 2.8 | |
4 days ago | 10 months ago | |
Python | ||
BSD 3-clause "New" or "Revised" License | - |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Hunting-Queries-Detection-Rules
- Advanced Hunting queries every admin should use
- Hunting Querie into a Detection rule
- MS Sentinel Analytics & KQL
- Analytical rules
- MDE Repointing Frequency
-
Least occurrence in MDE
This will be the query that you are looking for. I do have a lot more queries if you are interested: https://github.com/Bert-JanP/Hunting-Queries-Detection-Rules
- Must have analytic rules
modelfirst
-
Draw Data Model Schema and generate code
I plan to show the progress here: https://github.com/CodeGeniux/modelfirst
- Draw Data Model Schema and generate Python code
- Draw Data Model Schema and generate code for TypeORM
What are some alternatives?
Microsoft-365-Defender-Hunting-Queries - Sample queries for Advanced hunting in Microsoft 365 Defender
Telosys - Telosys Command Line Interface - Code Generator for any language with any framework
chatgpt-raycast - ChatGPT raycast extension
generator - Use your AsyncAPI definition to generate literally anything. Markdown documentation, Node.js code, HTML documentation, anything!
kusto-queries - example queries for learning the kusto language
hetu - 低代码平台, 可视化编辑器,单手打代码,解放你的双手
Sentinel-Queries - Collection of KQL queries
jet - Type safe SQL builder with code generation and automatic query result data mapping
AzureHunter - A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365
Insanity - Meta-programming for Swift, stop writing boilerplate code.
Linux Security - Ways to attack and protect Linux 🧢
jeecg-boot - 🔥「企业级低代码平台」前后端分离架构SpringBoot 2.x/3.x,SpringCloud,Ant Design&Vue,Mybatis,Shiro,JWT。强大的代码生成器让前后端代码一键生成,无需写任何代码! 引领新的开发模式OnlineCoding->代码生成->手工MERGE,帮助Java项目解决70%重复工作,让开发更关注业务,既能快速提高效率,帮助公司节省成本,同时又不失灵活性。