A growing library of CrowdStrike CQL threat-hunting packs. Each one is a self-contained, copy-paste playbook for a single threat, providing a hunt hypothesis, MITRE ATT&CK mapping, ready-to-run queries, triage steps, and hardening guidance to take you from initial detection to closing the gap.