#MicrosoftDefenderXDR
Ready to master the Kusto Query Language #KQL? Join Koos Goossens' highly interactive training at OrangeCon! 🌟 Start from 0 and ramp up with hands-on challenges, best practices, and real-world scenarios. #OrangeCon #Cybersecurity #MicrosoftDefenderXDR orangecon.nl/kql
June 19, 2024 at 10:17 AM
Check out my first blog post about "Insight on Azure Instance Metadata Service from an attacker and defender perspective" 🛡️⚔️!

lorisambrozzo.medium.com/insight-into...

#MicrosoftAzure #IMDS #MicrosoftSentinel #MicrosoftDefenderXDR
Insight into the Azure instance metadata service from an attacker and defender perspective
Insight into the Azure instance metadata service with analysis on a Windows server and detection in Microsoft Defender XDR
lorisambrozzo.medium.com
December 11, 2024 at 6:45 AM
🚀🔎 Track Sensitive Graph API Calls with my new #KQL Function for #MicrosoftDefenderXDR

Microsoft has released the new advanced hunting table "GraphAPIAuditEvents" which offers great opportunities to investigate activities based on #MicrosoftGraph API calls.
July 17, 2025 at 6:43 AM
🏹 𝐍𝐞𝐰 #𝐊𝐐𝐋 𝐪𝐮𝐞𝐫𝐲!

➡️ 𝐅𝐞𝐭𝐜𝐡 𝐝𝐲𝐧𝐚𝐦𝐢𝐜 𝐚𝐧𝐝 𝐦𝐚𝐧𝐮𝐚𝐥 𝐭𝐚𝐠𝐬 𝐟𝐨𝐫 𝐚𝐜𝐭𝐢𝐯𝐞 𝐝𝐞𝐯𝐢𝐜𝐞𝐬
🔗 github.com/cyb3rmik3/KQ...

#MicrosoftSecurity #KustoQuery #KustoQueryLanguage #MicrosoftSentinel #MicrosoftDefender #MicrosoftDefenderXDR
August 29, 2025 at 7:46 AM