Repository with Sentinel Analytics Rules, Hunting Queries and helpful external data sources.
-
Updated
Apr 7, 2026 - Bicep
Repository with Sentinel Analytics Rules, Hunting Queries and helpful external data sources.
Azure honeypot with automated threat intelligence pipeline using Sentinel, KQL, and n8n SOAR
Collect, Transform and Load custom logs to Azure Log Analytics Workspace
Use custom logs from azure vm to monitor resources and alert on events
🛡️ Deploy a vulnerable Azure VM honeypot to capture login attempts and transform attacks into actionable threat intelligence for enhanced security.
Add a description, image, and links to the kql topic page so that developers can more easily learn about it.
To associate your repository with the kql topic, visit your repo's landing page and select "manage topics."