An open API service indexing awesome lists of open source software.

Projects in Awesome Lists tagged with evtx

A curated list of projects in awesome lists tagged with evtx .

https://github.com/mdecrevoisier/Microsoft-eventlog-mindmap

Set of Mindmaps providing a detailed overview of the different #Microsoft auditing capacities for Windows, Exchange, Azure,...

active-directory azure evtx exchange incident-response mindmap windows

Last synced: 08 May 2025

https://github.com/williballenthin/python-evtx

Pure Python parser for Windows Event Log files (.evtx)

event-log evtx forensics

Last synced: 15 May 2025

https://github.com/wagga40/Zircolite

A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs

auditd detection evtx evtxtract forensics forensics-tools pysigma python3 sigma sigma-rules sysmon

Last synced: 21 Nov 2024

https://github.com/mdecrevoisier/EVTX-to-MITRE-Attack

Set of EVTX samples (>270) mapped to MITRE ATT&CK tactic and techniques to measure your SIEM coverage or developed new use cases.

evtx mitre-attack redteam siem threat-hunting

Last synced: 08 May 2025

https://github.com/EricZimmerman/evtx

C# based evtx parser with lots of extras

event eventlog evtx windows

Last synced: 10 Apr 2025

https://github.com/nvisosecurity/evtx-hunter

evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.

csirt evtx incident-response infosec netsec threat-hunting

Last synced: 29 Nov 2024

https://github.com/sumeshi/evtx2es

A library for fast parse & import of Windows Eventlogs into Elasticsearch.

elasticsearch eventlog evtx parser python windows

Last synced: 21 Nov 2024

https://github.com/AhmedKamal1432/Evilize

Triaging Windows event logs based on SANS Poster

dfir eventlogs events evt evtx incident-response sans

Last synced: 21 Nov 2024

https://github.com/knightchaser/aesir

A simple System monitor(Sysmon) EVTX inspector; search, visualize, and track Sysmon events

evtx evtx-analysis golang log-analysis log-parser mongodb mux nosql sysmon web

Last synced: 07 May 2025

https://github.com/jupyterj0nes/masstin

Masstin: High-Speed DFIR Tool written in Rust and Graph Visualization in Neo4j for Comprehensive Lateral Movement Analysis

dfir digital-forensic-tool digital-forensics digital-forensics-incident-response evtx lateral-movement neo4j rust

Last synced: 09 Feb 2025

https://github.com/alshadex/evtxreader

The Python Windows .evtx log file parser module

evtx logging parser pip windows

Last synced: 01 Mar 2025

https://github.com/knightchaser/sentinela

A simplified EVTX file parser wrapping 0xrawsec's golang-evtx module

evtx go opensource parsing sysmon

Last synced: 23 Mar 2025

https://github.com/suuhm/xml_event_xtractor

export and analyze windows evtx events from xmlcli export files

analyzer blueteam events evtx logging siem windows xml xmlcli

Last synced: 20 Feb 2025