Cloud-native SIEM for intelligent security analytics for your entire enterprise.
Перейти к файлу
Lily Ma 0a7d92a66b
Create README.md
2019-10-29 11:17:52 -07:00
.github Rename PULL_REQUEST_TEMPLATE/pull_request_template.md to .github/PULL_REQUEST_TEMPLATE/pull_request_template.md 2019-04-02 10:46:50 +03:00
BYOML Create README.md 2019-10-29 11:17:52 -07:00
Dashboards Update DashboardsMetadata.json 2019-07-31 19:01:59 +03:00
DataConnectors/CEF Changing install script to replace files correctly and restart agent after , adding prints as well 2019-09-11 11:18:19 +03:00
Detections Merge branch 'master' into TrackChangePasswords_MultiData 2019-10-29 09:52:51 -07:00
Exploration Queries FIxing potential issues with mvexpand and rule creation failures due to entity types 2019-09-05 09:07:58 -07:00
Functions Removed time range 2019-06-24 10:27:53 -07:00
Hunting Queries Delete AzureResourceCreationWithNetworkActivity.yaml 2019-10-29 10:19:48 -07:00
Notebooks added nbwidgets to load properly 2019-10-16 13:57:17 +09:00
Parsers Update TrendMicroDeepSecurity 2019-10-27 17:53:28 +02:00
Playbooks Update Prompt-User.json 2019-10-22 09:34:22 -04:00
QueryLanguageSamples Adding current items (#11) 2019-01-18 14:20:01 +00:00
Workbooks Update WorkbooksMetadata.json 2019-10-27 18:00:16 +02:00
docs Add files via upload 2019-02-28 02:08:02 -08:00
.gitignore Fix host with new logons query (#151) 2019-05-01 10:47:39 +03:00
CODEOWNERS Update CODEOWNERS 2019-10-22 14:40:20 +03:00
LICENSE Initial commit 2018-08-17 19:25:18 -07:00
README.md Update README.md 2019-02-28 01:52:05 -08:00

README.md

Azure Sentinel

Welcome to the Azure Sentinel repository! This repository contains out of the box detections, exploration queries, hunting queries, dashboards and playbooks to help you get ramped up with Azure Sentinel and provide you security content to secure your environment and hunt for threats. You can also submit any issues or feature requests as you onboard to Azure Sentinel. For questions and feedback, please contact AzureSentinel@microsoft.com

Resources

Getting started with GitHub

Azure Sentinel documentation

Azure Sentinel Techcommunity

Contributing

This project welcomes contributions and suggestions. Most contributions require you to agree to a Contributor License Agreement (CLA) declaring that you have the right to, and actually do, grant us the rights to use your contribution. For details, visit https://cla.microsoft.com.

When you submit a pull request, a CLA-bot will automatically determine whether you need to provide a CLA and decorate the PR appropriately (e.g., label, comment). Simply follow the instructions provided by the bot. You will only need to do this once across all repos using our CLA.

This project has adopted the Microsoft Open Source Code of Conduct. For more information see the Code of Conduct FAQ or contact opencode@microsoft.com with any additional questions or comments.