Bert-Jan
Bert-Jan
Hunting-Queries-Detection-Rules
KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.
Open-Source-Threat-Intel-Feeds
This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple types such as IP, URL, CVE and Hash.
Domain-Response
Domain Response is a tool that is designed to help you automate the investigation for a domain. This tool is specificly designed to automated phishing domain investigations. However it can be used for...
Incident-Response-Powershell
PowerShell Digital Forensics & Incident Response Scripts.
Sentinel-Automation
Sentinel Logic Apps/Playbooks to automate enrichment, incident analysis and more.