Blue-teaming-with-kql Alternatives
Similar projects and alternatives to blue-teaming-with-kql based on common topics and language
-
awesome-kql-sentinel
A curated list of blogs, videos, tutorials, queries and anything else valuable to help you learn and master KQL and Microsoft Sentinel
-
InfluxDB
Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
-
Hunting-Queries-Detection-Rules
KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.
-
KQL
Threat Hunting query in Microsoft 365 Defender, XDR. Provide out-of-the-box KQL hunting queries - App, Email, Identity and Endpoint.
blue-teaming-with-kql reviews and mentions
-
Microsoft Sentinel - the whys of KQL
Also: - https://threathunt.blog/tag/kql/ - MDE-specific: https://learn.microsoft.com/en-us/microsoft-365/security/defender/advanced-hunting-query-language?view=o365-worldwide - https://github.com/ashwin-patil/blue-teaming-with-kql
Stats
ashwin-patil/blue-teaming-with-kql is an open source project licensed under MIT License which is an OSI approved license.
Popular Comparisons
Sponsored