[New Blogpost] - Modern Security for Legacy Systems
- Defender for Endpoint on Windows 7
medium.com/@verboonalex...
#DefenderXDR #DefenderforEndpoint #Windows7
@vacyber.bsky.social
CTO Principal Cyber Security Consultant at @BaseVISION | building cyber defenses to protect the enterprise | Microsoft security MVP | Host of http://KQLCafe.com
[New Blogpost] - Modern Security for Legacy Systems
- Defender for Endpoint on Windows 7
medium.com/@verboonalex...
#DefenderXDR #DefenderforEndpoint #Windows7
Countdown to #KustoCon
youtu.be/VQI9WgG--Xs?...
π KustoCon 2025 is official!
Watch the announcement video and register now for the main event or join us onsite in Zurich for also the hands-on detection engineering workshop!
Info & sign-up: kustocon.com/sessions/
#KustoCon #KQL #KustoFans
Website looks great and I enjoyed the podcast π
05.04.2025 20:56 β π 2 π 0 π¬ 1 π 0Use #KQL to identify the use of Portable Apps across your #DefenderforEndpoint devices
github.com/alexverboon/...
Defender Resource Hub Update - Spring 2025
defenderresourcehub.info
#MicrosoftSecurity #DefenderXDR #ITDR #EntraID #MicrosoftSentinel #Defenders
Interested to learn more about Azure Fabric? Join us at the KQLCafe tomorrow Tuesday February 25, 18:00 CET with guest speaker Uri Barash
More information and registration here: kqlcafe.com#upcoming-shows
#kql #AzureFabric #Kusto
[Tip!] Still running MMA for Defender for Endpoint on older Windows Servers/Clients? Not sure? Then check out these queries:
github.com/alexverboon/...
#DefenderForEndpoint #Security #StayCurrent
Defender Resource Hub Update - Winter 2025
defenderresourcehub.info
#Security #Learn #StayUptodate #Defenders #MicrosoftSecurity
My previous MCAS Toolbox was last updated in 2021, and meanwhile we have new APIs so here' a first updated set of PowerShell scripts to manage Defender for Cloud Apps github.com/alexverboon/Deβ¦
#mcas #powershell #mvpubzz #Security
[New KQL Query] Detect changes to Microsoft Entra ID Self Service Password Reset configuration settings
github.com/alexverboon/...
#KQL #EntraID #SSPR #mvpbuzz
Microsoft is retiring the MFA Fraud alert in favor of the replacement feature "Report Suspicious Activity" here's a KQL query to detect these events.
github.com/alexverboon/...
#KQL #EntraID #mvpbuzz #MFA
Use the below queries to list all Azure DevOps Code and Infrastructure as code recommendations.
Get all Azure DevOps Security Code & Infrastructure as code recommendations with #KQL
github.com/alexverboon/...
#kql #AzureDevOpsSecurity #CodeAnalysis
Hello #KQL Fans & Geeks,
We are taking a short break, but we'll be back in January 2025. Check out our lineup of guest speakers here: kqlcafe.com#our-mission
And in case you missed it, the KustoCon Conference session recordings are available now. kqlcafe.com/KustoCon/Kus...
π Relive KustoCon 2024! π§ π Our 6 expert-led sessions are now available for you to watch on-demand. Dive into the latest KQL insights from top community experts. πΉ
π Watch here: lnkd.in/edeRJQtd
Today I created a few KQL queries to detect AzureDevOps - Organization Settings changes.
github.com/alexverboon/...
#KQL #AzureDevOps #Security #Sentinel