Lyc4on / EvtXHunt

EvtXHunt is an Autopsy plugin that is able to analyze Windows EVTX logs against a library of SIGMA rules.
16Updated 3 years ago

Alternatives and similar repositories for EvtXHunt:

Users that are interested in EvtXHunt are comparing it to the libraries listed below