Projects in Awesome Lists tagged with evtx
A curated list of projects in awesome lists tagged with evtx .
https://github.com/sbousseaden/EVTX-ATTACK-SAMPLES
Windows Events Attack Samples
dataset detection-engineering dfir evtx mitre-attack threat-hunting windows-security winlogbeat
Last synced: 23 Mar 2025
https://github.com/sbousseaden/evtx-attack-samples
Windows Events Attack Samples
dataset detection-engineering dfir evtx mitre-attack threat-hunting windows-security winlogbeat
Last synced: 13 Mar 2025
https://github.com/mdecrevoisier/Microsoft-eventlog-mindmap
Set of Mindmaps providing a detailed overview of the different #Microsoft auditing capacities for Windows, Exchange, Azure,...
active-directory azure evtx exchange incident-response mindmap windows
Last synced: 08 May 2025
https://github.com/williballenthin/python-evtx
Pure Python parser for Windows Event Log files (.evtx)
Last synced: 15 May 2025
https://github.com/wagga40/Zircolite
A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs
auditd detection evtx evtxtract forensics forensics-tools pysigma python3 sigma sigma-rules sysmon
Last synced: 21 Nov 2024
https://github.com/mdecrevoisier/EVTX-to-MITRE-Attack
Set of EVTX samples (>270) mapped to MITRE ATT&CK tactic and techniques to measure your SIEM coverage or developed new use cases.
evtx mitre-attack redteam siem threat-hunting
Last synced: 08 May 2025
https://github.com/EricZimmerman/evtx
C# based evtx parser with lots of extras
Last synced: 10 Apr 2025
https://github.com/jurelou/epagneul
Graph Visualization for windows event logs
blueteam dfir-automation evtx forensics forensics-tools hunting security security-tools threat-hunting
Last synced: 21 Nov 2024
https://github.com/nvisosecurity/evtx-hunter
evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.
csirt evtx incident-response infosec netsec threat-hunting
Last synced: 29 Nov 2024
https://github.com/sumeshi/evtx2es
A library for fast parse & import of Windows Eventlogs into Elasticsearch.
elasticsearch eventlog evtx parser python windows
Last synced: 21 Nov 2024
https://github.com/kacos2000/evtx_log_browser
Evtx Log (xml) Browser
evtx gui powershell windows-10 windows11 xml
Last synced: 07 Apr 2025
https://github.com/kacos2000/Evtx_Log_Browser
Evtx Log (xml) Browser
evtx gui powershell windows-10 windows11 xml
Last synced: 29 Apr 2025
https://github.com/AhmedKamal1432/Evilize
Triaging Windows event logs based on SANS Poster
dfir eventlogs events evt evtx incident-response sans
Last synced: 21 Nov 2024
https://github.com/knightchaser/aesir
A simple System monitor(Sysmon) EVTX inspector; search, visualize, and track Sysmon events
evtx evtx-analysis golang log-analysis log-parser mongodb mux nosql sysmon web
Last synced: 07 May 2025
https://github.com/jupyterj0nes/masstin
Masstin: High-Speed DFIR Tool written in Rust and Graph Visualization in Neo4j for Comprehensive Lateral Movement Analysis
dfir digital-forensic-tool digital-forensics digital-forensics-incident-response evtx lateral-movement neo4j rust
Last synced: 09 Feb 2025
https://github.com/knightchaser/sentinela
A simplified EVTX file parser wrapping 0xrawsec's golang-evtx module
evtx go opensource parsing sysmon
Last synced: 23 Mar 2025