Simple collection of threat hunting queries for SCCM CMPivot mapped to Mitre ATT&CK where possible.
Repo is under constuction, expect a better description here later.
Feel free to suggest some pivots via issues, i'll be adding more as I adapt/find useful ones.
More info about CMPivot here.
Lots of inspiration taken from the work at:
- https://github.com/teoseller/osquery-attck/
- The excellent MITRE ATT&CK based OSQuery repo.