Workshop: Kusto Graph Semantics Explained
A technical workshop explaining Kusto Graph (Kraph) semantics for security analysis, including lab setup with Sentinel, Sysmon, and KQL.
A technical workshop explaining Kusto Graph (Kraph) semantics for security analysis, including lab setup with Sentinel, Sysmon, and KQL.
A guide to using KQL aggregation functions like count() and dcount() in Microsoft Sentinel/Log Analytics to summarize and analyze security alert data.
Explains the security concept of Audit Trails in SQL Server, covering their purpose, implementation, and importance for incident response.
A guide to getting started with Azure Sentinel, Microsoft's cloud-native SIEM and SOAR solution, covering setup, data connectors, and initial configuration.