Azure Kusto Irql

作者 microsoft354361d83247MIT收录于 2026年10月8日更新于 2026年10月8日

Compose IRQL (Incident Response Query Language) queries for Kusto cybersecurity investigations. Translates natural language hunting questions into composable IRQL pipelines using Get_*, Extract_*, and Enrich_* functions. WHEN: IRQL query, security hunt, threat hunting KQL, incident response query, compose hunting pipeline, failed logins, phishing investigation, lateral movement, process execution, file creation events.

精选仅含说明SecurityData & Analytics

仅公开文件列表。将技能安装到工作区后即可查看文件内容。

路径大小类型
references/EXAMPLES.md2.2 KBtext/markdown
references/KUSTO_EXPLORER_LAUNCH.md2.6 KBtext/markdown
SKILL.md10.2 KBtext/markdown

来源与署名

来源:microsoft/skills位于.github/plugins/azure-kusto-graph-skills/skills/azure-kusto-irql提交354361d

许可证: MIT

内容归原作者所有。SourceWeft 从公开仓库中收录这些内容。

举报或申请下架