Zircolite

Zircolite

A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux lo

Python628

4 months ago

auditddetectionevtx

EVTX-ATTACK-SAMPLES

EVTX-ATTACK-SAMPLES

Windows Events Attack Samples

HTML2179gpl-3.0

2 years ago

datasetdetection-engineeringdfir

EVTXtract

EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary

Python176apache-2.0

5 years ago