Skip to content

h0ffayyy/MicrosoftSentinelStuff

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

10 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

Microsoft Sentinel Stuff

Various content for Microsoft Sentinel

Workbooks

Playbooks

  • BlockIP-Namedlocation - take IP addresses from a Microsoft Sentinel incident and add them to a Conditional Access named location for blocking
  • Watchlist-Backup - make copies of your watchlists and store them in Azure blob storage

Releases

No releases published

Packages

No packages published