About

This book is a place for all kinds of content related to threat hunting and detection.

Contents

This book contains guides that you can apply with your tools. In addition, It contains detection content for Azure Sentinel and Microsoft 365 Defender suite. Many of the detection content can also be converted to Splunk queries since KQL and SPL are quite similar. Detection content is published on GitHub:

Want to Support?

If you like my work, have benefited from it, and want to show appreciation, you can buy me a coffee.

Social

Last updated

Was this helpful?