KQL Queries. Microsoft Defender, Microsoft Sentinel
-
Updated
Mar 25, 2025 - HTML
KQL Queries. Microsoft Defender, Microsoft Sentinel
KQL Queries. Microsoft Defender, Microsoft Sentinel
This repository contains a selection of Kusto Query Language (KQL) queries designed for proactive threat hunting. Aligned with the MITRE ATT&CK framework, these queries are crafted to detect and address potential threats effectively.
KQL Library provides a clean, intuitive interface for security professionals to search and copy kusto queries. Featuring category-based organization and instant search capabilities.
Add a description, image, and links to the defenderxdr topic page so that developers can more easily learn about it.
To associate your repository with the defenderxdr topic, visit your repo's landing page and select "manage topics."