Skip to content

Sigma2KQL

Vulnerability Scanning

A repository of all SIGMA rules converted to KQL that runs on a weekly schedule to update the repository and align with the up to date version of the SIGMA rules repository.

Python Latest 2025_11_2_Sigma2KQL · 6mo ago Security brief →

Features

  • Converts Sigma security queries into Kusto Query Language (KQL) for use in Azure Defender and Sentinel
  • Automates bulk conversion of large rule sets with reporting on successes and failures
  • Provides a helper script that reads a Sigma repository directory and writes organized KQL output folders

Recent releases

View all 2 releases →
No immediate action
2025_11_2_Sigma2KQL Bugfix

Multi-line description fix

No immediate action
2025_11_1_Sigma2KQL Feature

Documentation

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

About

Stars
3
Forks
0
Language
Python

Install & Platforms

Install via
pip

Beta — feedback welcome: [email protected]