benscha/KQLAdvancedHunting
Production-ready KQL queries for Microsoft Defender XDR and Microsoft Sentinel. Focused on Threat Hunting, Detection Engineering, and MITRE ATT&CK mapping.
GitHub repository with 107 stars and 17 forks.
Language: PowerShell
Topics: advanced-hunting, kql, kql-queries, kql-threathunting, logicapps, sentinel, blue-team, defender-xdr, detection-engineering, m365-defender