MISP / evtx-toolkitLinks
Tool to read EVTX files including SYSMON and convert to JSON, MISP Objects and Graph stream
☆12Updated 5 years ago
Alternatives and similar repositories for evtx-toolkit
Users that are interested in evtx-toolkit are comparing it to the libraries listed below
Sorting:
- Library of threat hunts to get any user started!☆45Updated 5 years ago
- S2AN - Mapper of Sigma/Suricata Rules/Signatures ➡️ MITRE ATT&CK Navigator☆89Updated 2 years ago
- Rhaegal is a tool written in Python 3 used to scan Windows Event Logs for suspicious logs. Rhaegal uses custom rule format to detect sus…