Copilot-For-Security
Copilot-For-Security copied to clipboard
IOC Query Builder and ASR Custom Plugins
Two custom plugins:
- GPT - IOC query builder (just KQL for now, but scope to extend to other SIEM query languages).
- KQL - Summary of ASR rules based on DeviceEvents table.
@KwachSean another 2 plugins for review.
@alfonso-greenbrook provide sample prompts to use the plugin
Have added example prompts to both readme.md and .yaml files.