KQL Search is a curated, searchable database of Kusto Query Language (KQL) queries specifically designed for cybersecurity professionals and threat hunters. It provides ready-to-use queries for Azure, Microsoft Defender, Entra ID, and other Microsoft security services, helping security teams quickly find and implement the queries they need.
Quickly find and execute pre-built KQL queries to hunt for specific threats or suspicious activities in your environment.
Access proven queries for investigating security incidents across Azure, Defender, and Entra ID logs.
Learn KQL syntax and best practices by studying and modifying real-world security queries.
Platform
Hosting
WebStatus
Download or access KQL Search and start optimizing your Intune management today.