├── Azure Data Explorer Python Demo.ipynb ├── Azure Data Explorer- Kqlmagic Demo.ipynb ├── Azure Data Lake with anomalize R Demo.ipynb ├── JupyterThon-ThreatHuntingatScalewithSparkNotebooks-2021.pdf ├── Jupyterthon-2022-Analysis of Billion Passwords.ipynb ├── Jupyterthon-TimeSeries Demo.ipynb ├── Open Source Threat Intel lookup using Requests API.ipynb ├── README.md ├── images └── OpenSourceTIFeedSummary.png ├── rawdata ├── Fortune_500_2017_from_data.world.csv ├── HostLogons-demo.csv ├── Summary-PasswordLength.txt ├── UserLogons-demo.csv ├── failedlogons.csv └── rtfm-windows.csv ├── requirements.txt └── threat-hunting-with-ipaddress-from-logs-Public.ipynb /Azure Data Explorer Python Demo.ipynb: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/Azure Data Explorer Python Demo.ipynb -------------------------------------------------------------------------------- /Azure Data Explorer- Kqlmagic Demo.ipynb: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/Azure Data Explorer- Kqlmagic Demo.ipynb -------------------------------------------------------------------------------- /Azure Data Lake with anomalize R Demo.ipynb: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/Azure Data Lake with anomalize R Demo.ipynb -------------------------------------------------------------------------------- /JupyterThon-ThreatHuntingatScalewithSparkNotebooks-2021.pdf: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/JupyterThon-ThreatHuntingatScalewithSparkNotebooks-2021.pdf -------------------------------------------------------------------------------- /Jupyterthon-2022-Analysis of Billion Passwords.ipynb: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/Jupyterthon-2022-Analysis of Billion Passwords.ipynb -------------------------------------------------------------------------------- /Jupyterthon-TimeSeries Demo.ipynb: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/Jupyterthon-TimeSeries Demo.ipynb -------------------------------------------------------------------------------- /Open Source Threat Intel lookup using Requests API.ipynb: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/Open Source Threat Intel lookup using Requests API.ipynb -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/README.md -------------------------------------------------------------------------------- /images/OpenSourceTIFeedSummary.png: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/images/OpenSourceTIFeedSummary.png -------------------------------------------------------------------------------- /rawdata/Fortune_500_2017_from_data.world.csv: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/rawdata/Fortune_500_2017_from_data.world.csv -------------------------------------------------------------------------------- /rawdata/HostLogons-demo.csv: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/rawdata/HostLogons-demo.csv -------------------------------------------------------------------------------- /rawdata/Summary-PasswordLength.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/rawdata/Summary-PasswordLength.txt -------------------------------------------------------------------------------- /rawdata/UserLogons-demo.csv: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/rawdata/UserLogons-demo.csv -------------------------------------------------------------------------------- /rawdata/failedlogons.csv: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/rawdata/failedlogons.csv -------------------------------------------------------------------------------- /rawdata/rtfm-windows.csv: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/rawdata/rtfm-windows.csv -------------------------------------------------------------------------------- /requirements.txt: -------------------------------------------------------------------------------- 1 | msticpy>=0.4.0 2 | statsmodels==0.11.1 -------------------------------------------------------------------------------- /threat-hunting-with-ipaddress-from-logs-Public.ipynb: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/ashwin-patil/threat-hunting-with-notebooks/HEAD/threat-hunting-with-ipaddress-from-logs-Public.ipynb --------------------------------------------------------------------------------