Skip to content
This repository was archived by the owner on Apr 16, 2025. It is now read-only.

LearningKijo/ResearchDev

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

97 Commits
 
 
 
 

Repository files navigation

ResearchDev

In this ResearchDev repository, I would like to share threat detection insights throughout Microsoft Defender XDR.

  • Effectively captures all suspicious activities across email, endpoint, identity and application.
  • Correlates alerts from different defenders into a single incident - this holistic view enhances the capabilities of SOC personnel for comprehensive monitoring and management of security incidents.
Product TEST/METHOD & Threat Detection
MDO MDO Safe Attachments : File Detonation Validation
MDE Microsoft Defender AV Tampering, Defense Evasion
MDE Windows Defender Firewall rule, EDR/AV Communication Tampering
MDE LSASS credential dumping, MiniDump

Disclaimer

The views and opinions expressed herein are those of the author and do not necessarily reflect the views of company.

About

ResearchDev - XDR & SIEM Detection

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published