Skip to content
#

microsoft-defender-xdr

Here are 11 public repositories matching this topic...

A curated list of high-quality resources focused on securing Microsoft cloud environments, including Identity (Entra ID), Microsoft 365, Microsoft Defender, Sentinel and Microsoft Purview.

  • Updated May 24, 2026

Cloud-native identity compromise hunt in Microsoft Entra ID and Microsoft 365. Reconstructed a patient operator's session from a Low-rated anonymous IP alert through internal spearphishing, inbox rule persistence, and credential theft using Sentinel KQL.

  • Updated Jun 23, 2026

Improve this page

Add a description, image, and links to the microsoft-defender-xdr topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the microsoft-defender-xdr topic, visit your repo's landing page and select "manage topics."

Learn more