Azure Kusto Irql

作者 microsoft354361d83247MIT收录于 2026年10月8日更新于 2026年10月8日

Compose IRQL (Incident Response Query Language) queries for Kusto cybersecurity investigations. Translates natural language hunting questions into composable IRQL pipelines using Get_*, Extract_*, and Enrich_* functions. WHEN: IRQL query, security hunt, threat hunting KQL, incident response query, compose hunting pipeline, failed logins, phishing investigation, lateral movement, process execution, file creation events.

精选仅含说明SecurityData & Analytics
  1. 354361d83247当前提交 354361d发布于 2026年10月8日

来源与署名

来源:microsoft/skills位于.github/plugins/azure-kusto-graph-skills/skills/azure-kusto-irql提交354361d

许可证: MIT

内容归原作者所有。SourceWeft 从公开仓库中收录这些内容。

举报或申请下架