Zircolite
A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux lo
Python598
29 days ago
auditddetectionevtx
EVTX-ATTACK-SAMPLES
Windows Events Attack Samples
HTML2130gpl-3.0
last year
datasetdetection-engineeringdfir
EVTXtract
EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary
Python173apache-2.0
4 years ago