Detection-as-code for Microsoft Sentinel: KQL detections validated with the official parser and mapped to MITRE ATT&CK

blue-team detection-as-code detection-engineering kql microsoft-sentinel mitre-attack python security siem threat-hunting
1 Open Issue Need Help Last updated: Sep 1, 2026

Open Issues Need Help

View All on GitHub

Detection-as-code for Microsoft Sentinel: KQL detections validated with the official parser and mapped to MITRE ATT&CK

Python
#blue-team#detection-as-code#detection-engineering#kql#microsoft-sentinel#mitre-attack#python#security#siem#threat-hunting