0xrawsec / golang-evtx
☆158Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for golang-evtx
- Signature engine for all your logs☆161Updated last year
- Golang Parser for Microsoft Event Logs☆98Updated 3 months ago
- simple YARA-based IOC scanner☆164Updated this week
- A Go implementation and parser for Sigma rules.☆84Updated 2 months ago
- Go library for ETW (Event Tracing for Windows) events processing☆60Updated 2 years ago
- Golang library that implements a sigma log rule parser and match engine.☆92Updated 4 months ago
- APIs for generating STIX 2.1 and TAXII 2.1 messages with Go (Golang)☆51Updated 2 years ago
- How to Zeek Sysmon Logs!☆101Updated 2 years ago
- A Go implementation of JARM☆119Updated 2 years ago
- SysmonX - An Augmented Drop-In Replacement of Sysmon☆210Updated 5 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆66Updated 6 months ago
- Log newly created WMI consumers and processes to the Windows Application event log☆124Updated 6 years ago
- enpoint detection / live analysis & sandbox host / signatures quality test☆42Updated 3 years ago
- ☆158Updated 3 years ago
- Go library for subscribing to Windows Event Log☆27Updated 5 years ago
- ☆53Updated 5 years ago
- Cross-platform Yara scanner written in Go☆330Updated last year
- ☆39Updated 2 years ago
- gyp: A pure Go YARA parser☆102Updated 8 months ago
- A lightweight tool to load Windows Event Log evtx files into Elasticsearch.☆115Updated 4 years ago
- Malware Sinkhole List in various formats☆102Updated 2 years ago
- Go bindings for YARA☆360Updated 4 months ago
- Invoke-LiveResponse☆145Updated 2 years ago
- Sigma Detection Rule Repository☆85Updated 4 years ago
- PowerGRR is an API client library in PowerShell working on Windows, Linux and macOS for GRR automation and scripting.☆56Updated 2 years ago
- SSDEEP hash lib in Golang☆100Updated 7 months ago
- SIGMA UI is a free open-source application based on the Elastic stack and Sigma Converter (sigmac)☆184Updated 3 years ago
- Automatically create YARA rules from malicious documents.☆207Updated 2 years ago
- An Inofficial Sysmon Version History (Change Log)☆32Updated 4 years ago