Zircolite

Zircolite

A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux lo

Python598

29 days ago

auditddetectionevtx

EVTX-ATTACK-SAMPLES

EVTX-ATTACK-SAMPLES

Windows Events Attack Samples

HTML2130gpl-3.0

last year

datasetdetection-engineeringdfir

EVTXtract

EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary

Python173apache-2.0

4 years ago