KQL Queries. Microsoft Defender, Microsoft Sentinel
-
Updated
Nov 8, 2024 - HTML
KQL Queries. Microsoft Defender, Microsoft Sentinel
KQL Queries. Microsoft Defender, Microsoft Sentinel
This repository contains a selection of Kusto Query Language (KQL) queries designed for proactive threat hunting. Aligned with the MITRE ATT&CK framework, these queries are crafted to detect and address potential threats effectively.
Add a description, image, and links to the defenderxdr topic page so that developers can more easily learn about it.
To associate your repository with the defenderxdr topic, visit your repo's landing page and select "manage topics."