KQL – The mother of all languages in Azure
KQL, the Kusto Query Language, is used in many Microsoft services, including the Azure and Microsoft Security platforms such as the ATP family. This post is part of a series of blog posts about KQL....
Just another day of IR, Threat-Hunting & Microsoft Security
KQL, the Kusto Query Language, is used in many Microsoft services, including the Azure and Microsoft Security platforms such as the ATP family. This post is part of a series of blog posts about KQL....
The following post Azure Sentinel Tables and Structure, describe the table and structure in Azure Sentinel. Azure Sentinel Data is based on Azure Log Analytics, and this is similar to Azure Monitor itself. Data in...