Thanks to visit codestin.com
Credit goes to Github.com

Skip to content
View Bert-JanP's full-sized avatar

Highlights

  • Pro

Block or report Bert-JanP

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results
PowerShell 40 2 Updated Feb 9, 2026

Interactive PowerShell framework for testing WMI, COM, LOLBAS, and persistence techniques

PowerShell 93 15 Updated Dec 28, 2025

Serverless AITM Simulation Framework for Entra ID and M365

Python 208 31 Updated Dec 29, 2025

A PowerShell module for the Defender XDR portal

PowerShell 64 6 Updated Feb 3, 2026

A PowerShell variant of the amazing patch_review.py by kevthehermit

PowerShell 185 21 Updated Oct 23, 2025

A deliberately vulnerable Microsoft Entra ID environment. Learn identity security through hands-on, realistic attack challenges.

PowerShell 889 86 Updated Jan 15, 2026

Defener goodies

PowerShell 2 Updated Aug 20, 2025

ASR Configurator, Essentials and Atomic Testing

Python 101 12 Updated Apr 14, 2025

Conditional Access baseline for March 2025

12 1 Updated Mar 4, 2025

Velociraptor Server hosted in Azure App Service

Bicep 59 3 Updated Jun 4, 2025

Collection of different Azure/Entra focused solutions (Deployable templates, Function Apps, etc)

PowerShell 78 4 Updated Feb 11, 2026

Repository where I hold random detection and threat hunting queries that I come up with based on different sources of information (or even inspiration).

277 24 Updated Dec 20, 2025

PowerShell tools to help defenders hunt smarter, hunt harder.

PowerShell 457 51 Updated Oct 29, 2025
Python 283 34 Updated Aug 14, 2025

This repository contains a wide array of KQL Queries ready for you to easily copy, paste, and execute within Intune.

119 11 Updated Feb 28, 2025

A website tracking the table schema of Microsoft XDR tables

4 Updated Oct 19, 2024

Office 365 Reporting PowerShell Scripts

PowerShell 1,813 460 Updated Feb 13, 2026

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.

PowerShell 2,468 364 Updated Dec 31, 2025

Automatically created C2 Feeds

REXX 661 54 Updated Feb 14, 2026

A repository of sysmon configuration modules

PowerShell 2,970 644 Updated Aug 21, 2024

Azure Security Resources and Notes

PowerShell 1,704 227 Updated Feb 2, 2026

Sample queries and data as part of the Microsoft Press book, The Definitive Guide to KQL

282 33 Updated Aug 28, 2024

Live Feed of C2 servers, tools, and botnets

Python 745 74 Updated Feb 9, 2026
Jupyter Notebook 7 Updated Mar 8, 2025

The Microsoft Sentinel Triage AssistanT (STAT) enables easy to create incident triage automation in Microsoft Sentinel

PowerShell 277 64 Updated Jan 2, 2026

Sharing my KQL queries for Azure Sentinel

PowerShell 206 43 Updated Feb 9, 2026

Hardcore Debugging

929 117 Updated Jan 6, 2026

Hunting Queries for Defender ATP

83 9 Updated Dec 14, 2025
Next