payaljaiswani Goto Github PK
Name: @blueteamer
Type: User
Company: Microsoft
Location: Hyderabad
Name: @blueteamer
Type: User
Company: Microsoft
Location: Hyderabad
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
Course materials for Malware Analysis by RPISEC
Sample queries for Advanced hunting in Microsoft 365 Defender
Hunting Queries for Microsoft Defender Security Center https://docs.microsoft.com/en-us/windows/security/threat-protection/microsoft-defender-atp/advanced-hunting-overview
MSBuildShell, a Powershell Host running within MSBuild.exe
Microsoft Threat Intelligence Security Tools
Great explanation of Process Hollowing (a Technique often used in Malware)
Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK
Collection of KQL queries
Azure Sentinel Playbooks
Generic Signature Format for SIEM Systems
Yara detection
Understand adversary tradecraft and improve detection strategies
The idea is simply to save some quick notes that will make it easier for Splunk users to leverage KQL (Kusto), especially giving projects requiring both technologies (Splunk and Azure/Sentinel) or any other hybrid environments. Feel free to add/suggest entries.
A list of Splunk queries that I've collected and used over time.
A Threat hunter's playbook to aid the development of techniques and hypothesis for hunting campaigns.
An informational repo about hunting for adversaries in your IT environment.
Tools for hunting for threats.
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.