GitHub 中文社区
回车: Github搜索    Shift+回车: Google搜索
论坛
排行榜
趋势
登录

©2025 GitHub中文社区论坛GitHub官网网站地图GitHub官方翻译

  • X iconGitHub on X
  • Facebook iconGitHub on Facebook
  • Linkedin iconGitHub on LinkedIn
  • YouTube iconGitHub on YouTube
  • Twitch iconGitHub on Twitch
  • TikTok iconGitHub on TikTok
  • GitHub markGitHub’s organization on GitHub
集合主题趋势排行榜
#

evtx

Website
Wikipedia
https://static.github-zh.com/github_avatars/sbousseaden?size=40
sbousseaden / EVTX-ATTACK-SAMPLES

Windows Events Attack Samples

threat-huntingevtxwindows-securitymitre-attackdetection-engineeringdatasetwinlogbeatdfir
HTML 2.37 k
2 年前
https://static.github-zh.com/github_avatars/mdecrevoisier?size=40
mdecrevoisier / Microsoft-eventlog-mindmap

Set of Mindmaps providing a detailed overview of the different #Microsoft auditing capacities for Windows, Exchange, Azure,...

mindmapevtxWindowsincident-responseAzureexchangeactive-directory
1.08 k
9 个月前
https://static.github-zh.com/github_avatars/williballenthin?size=40
williballenthin / python-evtx

Pure Python parser for Windows Event Log files (.evtx)

event-logevtxforensics
Python 748
1 个月前
https://static.github-zh.com/github_avatars/wagga40?size=40
wagga40 / Zircolite

A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs

sigmaPythonevtxdetectionsysmonforensicsforensics-tools
Python 720
2 个月前
https://static.github-zh.com/github_avatars/mdecrevoisier?size=40
mdecrevoisier / EVTX-to-MITRE-Attack

Set of EVTX samples (>270) mapped to MITRE ATT&CK tactic and techniques to measure your SIEM coverage or developed new use cases.

mitre-attacksiemevtxthreat-huntingredteam
577
5 个月前
https://static.github-zh.com/github_avatars/EricZimmerman?size=40
EricZimmerman / evtx

C# based evtx parser with lots of extras

Windowseventeventlogevtx
C# 311
2 个月前
https://static.github-zh.com/github_avatars/jurelou?size=40
jurelou / epagneul

Graph Visualization for windows event logs

安全forensicsforensics-toolsthreat-huntinghuntingevtxblueteamdfir-automation
Python 238
5 个月前
https://static.github-zh.com/github_avatars/NVISOsecurity?size=40
NVISOsecurity / evtx-hunter

evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.

threat-huntingevtxincident-responseCybersecuritynetsec
Python 153
4 年前
https://static.github-zh.com/github_avatars/fox-it?size=40
fox-it / danderspritz-evtx

Parse evtx files and detect use of the DanderSpritz eventlogedit module

evtxPython
Python 148
8 年前
https://static.github-zh.com/github_avatars/ine-labs?size=40
ine-labs / ThreatSeeker

ThreatSeeker: Threat Hunting via Windows Event Logs

evtxLoggingsysmonthreatthreat-detectionthreat-intelligenceWindows
Python 121
2 年前
https://static.github-zh.com/github_avatars/sumeshi?size=40
sumeshi / evtx2es

A library for fast parse & import of Windows Eventlogs into Elasticsearch.

elasticsearchPythoneventlogevtxWindowsParserdfirforensics
Python 85
1 个月前
https://static.github-zh.com/github_avatars/kacos2000?size=40
kacos2000 / Evtx_Log_Browser

Evtx Log (xml) Browser

PowerShellGUIXMLevtxWindows
PowerShell 56
2 年前
https://static.github-zh.com/github_avatars/AhmedKamal1432?size=40
AhmedKamal1432 / Evilize

Triaging Windows event logs based on SANS Poster

eventssansevtxincident-responsedfir
PowerShell 39
2 年前
https://static.github-zh.com/github_avatars/ceramicskate0?size=40
ceramicskate0 / SWELF

Simple Windows Event Log Forwarder (SWELF). Its easy to use/simply works Log Forwarder and EVTX Parser. Almost in full release here at https://github.com/ceramicskate0/SWELF/releases/latest.

WindowseventlogforwarderLogging.NETlogsdefensehuntingCybersecuritysiemPowerShelldetectionanalyticsanalysisevtxsysmon
C# 24
2 年前
https://static.github-zh.com/github_avatars/logpresso?size=40
logpresso / community

Logpresso Mini and community contents for incident response

dfirevtxSQLite
17
4 年前
https://static.github-zh.com/github_avatars/Lyc4on?size=40
Lyc4on / EvtXHunt

EvtXHunt is an Autopsy plugin that is able to analyze Windows EVTX logs against a library of SIGMA rules.

evtxindicators-of-compromisedigital-forensicssigmaCybersecurity
Python 16
4 年前
https://static.github-zh.com/github_avatars/forensenellanebbia?size=40
forensenellanebbia / powershell-scripts

Powershell scripts

forensicsPowerShelletlevtxevent-logblueteam
PowerShell 12
3 年前
https://static.github-zh.com/github_avatars/martinmathurine?size=40
martinmathurine / Windows-Event-Log-Analyser

This is a PySimpleGUI-based Python software tool for processing and visualising selected Windows Event Security.evtx log files that meet a condition in Event ID 4688.

evtxlogLoggingNetworknetworksecuritypasswordProject自动化Parsing
Python 6
1 年前
https://static.github-zh.com/github_avatars/KnightChaser?size=40
KnightChaser / aesir

A simple System monitor(Sysmon) EVTX inspector; search, visualize, and track Sysmon events

evtxGoLoggingMongoDBmuxNoSQLsysmonWeb
Go 6
1 年前
https://static.github-zh.com/github_avatars/whatabeautifulmemory?size=40
whatabeautifulmemory / glossy

Glossy Event Log Forensics

forensicsevtxeventlog
JavaScript 5
2 年前
loading...