Microsoft Sentinel
Microsoft Sentinel Analytics Rules
This website is a (sort of) beautified catalog of the official Microsoft Sentinel GitHub repository.
Because the official GitHub repository offers no good option to search for interesting Analytics Rules by technique, tactic or data connector, I created this site to make it easier to browse the vast number of analytics rules.
It is built automatically on a regular schedule and offers a way to search for Analytics Rules using different categories and tags.
All content is published in accordance with the original MIT license of the repository.
TTP search Category search Connector search
Statistics
| Count | |
|---|---|
| Analytics Rules | 2403 |
| Data Connectors | 228 |
| Tactics | 16 |
| Techniques | 250 |
| Categories | 17 |
Release notes
| Version | Last updated | Release comment |
|---|---|---|
| 0.5 | 2026-07-05 | Changed to new design |
| 0.4 | 2023-02-02 | Switched to SentinelARConverter for ARM conversion |
| 0.3 | 2022-12-11 | ARM template code and “Deploy to Azure” button |
| 0.2 | 2022-12-05 | Added link to the original repo file |
| 0.1 | 2022-11-18 | Initial version |
This site was automatically generated on 05-07-2026 10:53