A repo for sample MDATP Power BI Templates
Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).
Microsoft Defender for Endpoint Device Control tools, samples, and resources.
KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.
sample code to MicrosoftDefenderATP API
MDE Tester is designed to help testing various features in Microsoft Defender for Endpoint.
Microsoft Defender ATP Manageability and Maintenance scripts
This project contains samples how to use MDATP API for integration with other systems and products
A curated list of resources for DFIR through Microsoft Defender for Endpoint leveraging kusto queries, powershell scripts, tools such as KAPE and THOR Cloud and more.
Defender for Endpoint
Threat Hunting query in Microsoft 365 Defender, XDR. Provide out-of-the-box KQL hunting queries - App, Email, Identity and Endpoint.
GraphQL endpoint for WordPress
An open-source windows defender manager. Now you can disable windows defender permanently.
Stop Windows Defender programmatically
翻译 - 以编程方式停止 Windows Defender
Windows Defender Killer | C++ Code Disabling Permanently Windows Defender using Registry Keys
Sample queries for Advanced hunting in Microsoft 365 Defender
翻译 - Microsoft Threat Protection中的高级搜寻示例查询
Welcome to the Microsoft Defender for Cloud community repository
Elastic Security detection content for Endpoint
Servlet endpoint for GraphQL Java
MDATP
Utility for configuring Windows 10 built-in Defender antivirus settings.
Bypass Windows Defender
C# obfuscator that bypass windows defender
Windows Defender Firewall Ban for hMailServer