Skip to content
/ KQL Public

This is for my crappy (but hopefully useful) MDE and Sentinel KQL queries! #KQLThePlanet

Notifications You must be signed in to change notification settings

mr-r3b00t/KQL

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

16 Commits
 
 
 
 

Repository files navigation

KQL

This is for my crappy (but hopefully useful) MDE and Sentinel KQL queries! #KQLThePlanet

Remember

Filenames can be changed File hashes can be changed Ports can be altered Signing Certs can be stolen IPs can be rotated etc.

Welcome to the cyber layer cake son!

About

This is for my crappy (but hopefully useful) MDE and Sentinel KQL queries! #KQLThePlanet

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published