Skip to content
#

detection-rules

Here are 75 public repositories matching this topic...

32 production-quality KQL detection rules for Microsoft Sentinel, mapped to MITRE ATT&CK for Cloud, credential access, lateral movement, exfiltration, defense evasion, and more

  • Updated Aug 1, 2026
security-playbooks

Security Playbooks is a collection of MITRE ATT&CK mapping, detection rules (Sigma, YARA, and Suricata), detection validation, and hands-on lab for cybersecurity professionals and SOC analysts.

  • Updated Aug 13, 2026
  • Makefile

Improve this page

Add a description, image, and links to the detection-rules topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the detection-rules topic, visit your repo's landing page and select "manage topics."

Learn more