Path Lines of Code Container Image Scan Vulnerability Assessment/Image Scan Automation Enrichment Security Gate/ImageScanSummaryAssessmentGate.ps1 151 DemoAutomation/config.ps1 10 Labs/Files/On_Demand_Insomnia_2024-10-14.yaml 129 Legacy Log Analytics dashboards/IdentityDashboard.ts 85 Legacy Log Analytics dashboards/SecurityAndAuditDashboard.ts 60 Legacy Log Analytics dashboards/ThreatIntelligenceDashboard.ts 46 Onboarding/AWS/GrantAccessToEksClusters.py 257 Onboarding/AWS/Utils.py 116 Policy/Configure API Security Posture Extension/Scripts/PowerShell - Enable DCSPM API Security Extension-AllSubscriptions.ps1 32 Policy/Configure API Security Posture Extension/Scripts/PowerShell - Enable DCSPM API Security Extension.ps1 27 Policy/Configure-DCSPM-Extensions/Scripts/PSEnableDCSPM.ps1 47 Policy/Configure-DCSPM-Extensions/Scripts/enableDCSPM-AllSubscriptions.ps1 48 Policy/Define MDC Trusted IPs/Scripts/OffboardTrustedIPsFromMDC.ps1 119 Powershell scripts/3rd party SIEM integration/EnableAlertsStreamingTo3rdPartySiem.ps1 236 Powershell scripts/Agentless Container Posture/Onboarding.ps1 50 Powershell scripts/Agentless Scanning CMK support/AddCmkPermissions.ps1 159 Powershell scripts/Alerts/DismissAllAlerts.ps1 100 Powershell scripts/Analyze Defender For Storage Configuration/Analyze-DefenderForStorageConfig.ps1 97 Powershell scripts/Create AMA DCR for Security Events collection/Add-AMASecurityEventDCR.ps1 139 Powershell scripts/Defender APIs Cost Estimator/d4apis_cost_estimator_v1.ps1 102 Powershell scripts/Defender for SQL servers on machines status report/Get-SqlVMProtectionStatusReport.ps1 256 Powershell scripts/Defender for Servers on resource level/ResourceLevelPricingAtScale.ps1 374 Powershell scripts/DefenderforAPIs-onboardAPIM-at-scale/CLI/All-APIMs-In-Subscription-DefenderforAPIs-Onboarding.cmd 32 Powershell scripts/DefenderforAPIs-onboardAPIM-at-scale/CLI/All-APIMs-In-Tenant-DefenderforAPIs-Onboarding.cmd 31 Powershell scripts/DefenderforAPIs-onboardAPIM-at-scale/CLI/All-APIs-In-APIM-DefenderforAPIs-Onboarding.cmd 33 Powershell scripts/DefenderforAPIs-onboardAPIM-at-scale/Powershell/All-APIMs-In-Subscription-DefenderforAPIs-Onboarding.ps1 46 Powershell scripts/DefenderforAPIs-onboardAPIM-at-scale/Powershell/All-APIMs-In-Tenant-DefenderforAPIs-Onboarding.ps1 49 Powershell scripts/DefenderforAPIs-onboardAPIM-at-scale/Powershell/All-APIs-In-APIM-DefenderforAPIs-Onboarding.ps1 49 Powershell scripts/Disable CSPM Plan/DisableCSPMAtScale.ps1 33 Powershell scripts/Disable CSPM Plan/DisableCSPMOneSub.ps1 31 Powershell scripts/Enable AI Threat protection plan/Powershell scripts with AI extension/PromptEvidenceCSV.ps1 60 Powershell scripts/Enable AI Threat protection plan/Powershell scripts with AI extension/PromptEvidenceTxt.ps1 48 Powershell scripts/Enable AMA Auto Provisioning/enable-amaDefender4Servers.ps1 111 Powershell scripts/Enable Defender for SQL servers on machines/EnableDefenderForSqlOnMachines.ps1 207 Powershell scripts/Enable MDC with a custom workspace/New-AzDefenderforCloudSubscription.ps1 85 Powershell scripts/Exemptions/Remove-MDFCPolicyExemptions.ps1 83 Powershell scripts/Export Containers Affected Components/DFC_AffectedCmp.ps1 61 Powershell scripts/Export a list of recommendations for all subscriptions/Get-All-ASC-Recommendations.ps1 111 Powershell scripts/Generate exemption report/Generate-ExemptionReport.ps1 68 Powershell scripts/Get Security Assessments (Recommendations)/Get-SecAssessment.ps1 88 Powershell scripts/Get Security Assessments (Recommendations)/Get-SecSubAssessment.ps1 48 Powershell scripts/Integration Settings/enable-integration-settings.ps1 106 Powershell scripts/Integration Settings/get-integration-report.ps1 54 Powershell scripts/JIT Scripts/JIT Custom Role/Set-JitLeastPrivilegedRole.ps1 90 Powershell scripts/JIT Scripts/New JIT Policy/New-JITPolicy.ps1 125 Powershell scripts/MDE Integration/Enable MDE Integration for Linux/Enable-LinuxMDE.ps1 43 Powershell scripts/MDE Integration/Enable MDE Unified solution/Enable-UnifiedMDE.ps1 44 Powershell scripts/MDE Integration/Enterprise Report on MDC - MDE VM Extension Failures/MDEExtErrorReport.ps1 72 Powershell scripts/MDE Integration/MDE VM Extension Single VM Onboard/MDESingleOnboard.ps1 18 Powershell scripts/MDE Integration/Migrate GCC Tenant/Migrate-GCCTenantFromPublic.ps1 98 Powershell scripts/Machines Not Protected by Defender for SQL Extension/list-notProtectedMachinesDefenderforSQL.ps1 205 Powershell scripts/MalwareScanScript/MalwareScanScript.ps1 223 Powershell scripts/Read Azure Storage Transaction Metrics/Read-AzStorageTransactions.ps1 258 Powershell scripts/Remove ASC Default policy assignment/Remove-ASCDefaultPolicyAssignment.ps1 69 Powershell scripts/Remove Log Analytics Agent At Scale/Remove-LA-agent-from-all-VMs.ps1 10 Powershell scripts/Remove Malware Scanning Index Tags/RemoveMalwareScanningIndexTags.ps1 224 Powershell scripts/Remove Malware Scanning Index Tags/RemoveMalwareScanningIndexTags_Vrsions.ps1 225 Powershell scripts/Security Event collection tier/WorkspaceDatasourcesSecurityEventList.ps1 38 Powershell scripts/Storage Price Estimation Script/D4Storage-PricingEstimation-Per-Storage-Parallel.ps1 63 Powershell scripts/Storage Price Estimation Script/D4Storage-PricingEstimation-Per-Storage.ps1 65 Powershell scripts/Storage Price Estimation Script/DefenderForStorage-CostEstimation-ResourceLevelVisibility.ps1 73 Powershell scripts/Storage Price Estimation Script/get-azStorageMetrics.ps1 236 Powershell scripts/Subscription Management/AzASCSubCount.ps1 92 Powershell scripts/Vulnerability Solution/New-ASCVASolution.ps1 112 Pricing & Settings/Defender for Kubernetes/audit-policy.yaml 145 Remediation scripts/Create Azure RBAC Role based on CIEM access report/Create Azure RBAC Role based on CIEM access report.ps1 496 Remediation scripts/Customize Endpoint Protection Recommendation/Modules/EndPointProtectionDSC/AzureGuestConfigurationPolicy/AzureGuestPolicyHelper.psm1 237 Remediation scripts/Customize Endpoint Protection Recommendation/Modules/EndPointProtectionDSC/AzureGuestConfigurationPolicy/Configurations/MonitorAntivirus.ps1 15 Remediation scripts/Customize Endpoint Protection Recommendation/Modules/EndPointProtectionDSC/AzureGuestConfigurationPolicy/ParameterFiles/EPAntivirusStatus.Params.psd1 12 Remediation scripts/Customize Endpoint Protection Recommendation/Modules/EndPointProtectionDSC/DSCResources/MSFT_EPAntivirusStatus/MSFT_EPAntivirusStatus.psm1 293 Remediation scripts/Customize Endpoint Protection Recommendation/Modules/EndPointProtectionDSC/EndPointProtectionDSC.psd1 80 Remediation scripts/DDoS Protection Standard should be enabled/PowerShell/Enable-AzSecurityDDOSProtection.ps1 50 Remediation scripts/Disk encryption should be applied on virtual machines/Powershell/Enable-AzureVMDiskEncryption.ps1 102 Remediation scripts/Enable Network Security Groups on subnets/PowerShell/Enable-NSGinSubnet.ps1 42 Remediation scripts/Enable auditing for the SQL server/PowerShell/Enable-AzSecuritySQLAuditing.ps1 71 Remediation scripts/Enable the built-in vulnerability assessment solution on virtual machines (powered by Qualys)/PowerShell/qualys-remediate-unhealthy-vms.ps1 52 Remediation scripts/Enable the built-in vulnerability assessment solution on virtual machines/PowerShell/Windows/Check-VA-VMExtension.ps1 63 Remediation scripts/Enable the built-in vulnerability assessment solution on virtual machines/PowerShell/Windows/Install-VA-VMExtention.ps1 59 Remediation scripts/Enable transparent data encryption on SQL databases/PowerShell/Set-Sql-Transparant-Data-Encryption.ps1 13 Remediation scripts/Function App should only be accessible over HTTPs/PowerShell/Set-FunctionAppHttpsOnly.ps1 5 Remediation scripts/IP forwarding on your virtual machine should be disabled/Powershell/DisableIpforwarder.ps1 5 Remediation scripts/Install Monitring Agent on VMSS/PowerShell/Install_VMSS.ps1 25 Remediation scripts/Install monitoring agent on VMSS/PowerShell/Install_VMSS.ps1 25 Remediation scripts/Install monitoring agent on your machines/PowerShell/Check-MMA-VMExtension.ps1 61 Remediation scripts/Install monitoring agent on your machines/PowerShell/Install-MMA-VMExtension.ps1 87 Remediation scripts/Management ports of virtual machines should be protected with just-in-time network access control/PowerShell/Archive/Enable-JIT.ps1 76 Remediation scripts/Management ports of virtual machines should be protected with just-in-time network access control/PowerShell/Enable-JITVM.ps1 42 Remediation scripts/Provision an Azure AD Administrator on SQL Server/PowerShell/Add-ADadminToSql.ps1 42 Remediation scripts/Remove External Accounts/PowerShell/Remove-external-accounts-from-your-subscription.ps1 25 Remediation scripts/Remove deprecated accounts from subscriptions/PowerShell/Remove-deprecated-accounts-from-subscriptions.ps1 26 Remediation scripts/Require secure transfer to storage account/PowerShell/Enable-AzSecuritySecureTransfer.ps1 35 Remediation scripts/Restrict access to App Services/PowerShell/Restrict-AzSecurityWebApps.ps1 94 Remediation scripts/Restrict access to storage accounts with firewall and virtual network configurations/PowerShell/Restrict-AzSecurityStorageAccounts.ps1 79 Remediation scripts/Vulnerability assessment should be enabled on your SQL managed instances/PowerShell/Enable-AzSecuritySQLMIVA.ps1 36 Remediation scripts/Vulnerability assessment should be enabled on your SQL servers/PowerShell/Enable-AzSecuritySQLVA.ps1 36 Remediation scripts/Web Application should only be accessible over HTTPS/PowerShell/Set-WebAppHttpsOnly.ps1 5 Secure Score/Get-SecureScoreData/Grant-SubscriptionPermissions.ps1 7 Secure Score/SecureScoreOverTimeReport/Grant-SubscriptionPermissions.ps1 7 Terraform/Deploy Microsoft Defender for Cloud/main.tf 155 Terraform/Deploy Microsoft Defender for Cloud/providers.tf 16 Translate Recommendations/Translate-DfC-Recommendations.ps1 85 Workflow automation/AzureSiteRecovery-RansomwareProtection/RansomwareDetector.ps1 216 Workflow automation/AzureSiteRecovery-RansomwareProtection/SchedulerForRansomwareDetection.ps1 227 Workflow automation/Export-ASCDataToEventHub/Grant-SubscriptionPermissions.ps1 7 Workflow automation/Export-ComplianceData/Grant-SubscriptionPermissions.ps1 7 Workflow automation/Move Malicious Blob FunctionApp Defender for Storage/MoveMaliciousBlobEventTrigger.cs 130 Workflow automation/Notify-NewAttackPath/prePolpulateAttackPathTable.ps1 58 Workflow automation/Send-WeeklyComplianceReport/Grant-SubscriptionPermissions.ps1 7