ddbnl / office365-audit-log-collectorView external linksLinks
Collect / retrieve Office365, AzureAD and DLP audit logs and output to PRTG, Azure Log Analytics Workspace, SQL, Graylog, Fluentd, and/or file output.
☆118Mar 25, 2024Updated last year
Alternatives and similar repositories for office365-audit-log-collector
Users that are interested in office365-audit-log-collector are comparing it to the libraries listed below
Sorting:
- The Office 365 Extractor is a tool that allows for complete and reliable extraction of the Unified Audit Log (UAL)☆266Feb 3, 2022Updated 4 years ago
- ☆16Mar 17, 2017Updated 8 years ago
- ☆36Dec 13, 2023Updated 2 years ago
- The method and files used to generate Sysmon event logs, push them to a remote Splunk, and ingest/normalize the data for analysis.☆10Sep 28, 2020Updated 5 years ago
- Alert condition plugin for Graylog to perform correlation☆28Jan 14, 2026Updated last month
- Deploy build artifact for a static website to an aws s3 bucket☆12Apr 21, 2018Updated 7 years ago
- Threat hunting with Sysmon and ArangoDB Graphs☆12Apr 16, 2020Updated 5 years ago
- Indicators of Normality☆11Jul 22, 2022Updated 3 years ago
- ☆16Dec 13, 2023Updated 2 years ago
- Crowdstrike Falcon Host script for iterating through instances to get alert and other relevant data☆13Jul 16, 2019Updated 6 years ago
- CyLR - Live Response Collection Tool☆10Jul 14, 2020Updated 5 years ago
- ReviveIT (revit) is a proof of concept file recovery tool (carver)☆12Dec 3, 2020Updated 5 years ago
- A vulnerabilities database for fully-automated audits☆16Jul 20, 2023Updated 2 years ago
- Dockerfiles for containerized osquery☆14May 23, 2017Updated 8 years ago
- An efficient tool for extracting files, directories, and alternate data streams directly from NTFS image files.☆22Feb 21, 2024Updated last year
- Privescker - make life easier by dumping all your common Windows enum, privesc and post exploitation scripts and tools on to the box in o…☆45Apr 4, 2022Updated 3 years ago
- AD Service Accounts FUNdamentals☆23Jun 17, 2025Updated 8 months ago
- CA-PowerToys is a set of tools to help you manage Conditional Access policies. It is a command line tool that can be used to export, impo…☆20Feb 5, 2026Updated last week
- Root module for creating Tier Model / Delegation Model on Active Directory☆20Aug 28, 2025Updated 5 months ago
- Kafka CLI with Powershell flavor☆17Mar 5, 2019Updated 6 years ago
- Repository for all cbapi example scripts☆16Sep 18, 2018Updated 7 years ago
- SQL scripts for querying event logs☆21Jul 12, 2017Updated 8 years ago
- Chiff command-line client.☆18Oct 31, 2025Updated 3 months ago
- A Lambda-powered Security Orchestration framework for AWS GuardDuty☆53Dec 15, 2019Updated 6 years ago
- A Windows DNS content pack for graylog.☆20Dec 13, 2023Updated 2 years ago
- Epimitheus is a tool that uses graphical database Neo4j for Windows Events visualization.☆19Mar 13, 2022Updated 3 years ago
- This Library provides python bindings to interact with the Cylance API.☆20Mar 20, 2023Updated 2 years ago
- Synopsis is a tool to aid analysts reviewing browser history files by providing a high-level “synopsis” of key information.☆22Oct 31, 2018Updated 7 years ago
- Initial Revision☆16Jun 11, 2018Updated 7 years ago
- A Dissect module implementing a parser for Microsofts Extensible Storage Engine Database (ESEDB), used for example in Active Directory, E…☆24Nov 20, 2025Updated 2 months ago
- SightingDB is a database for Sightings☆22Jun 21, 2023Updated 2 years ago
- Manage Your Large Team of Consultants☆11Sep 18, 2025Updated 5 months ago
- Python API for the LimaCharlie.io service.☆21Updated this week
- Windows Thingies... but in Rust☆23Nov 12, 2022Updated 3 years ago
- An efficient tool for search files, directories, and alternate data streams directly from NTFS image files.☆28Feb 21, 2024Updated last year
- Alert notification plugin for Graylog to generate log messages from alerts☆27Jan 14, 2026Updated last month
- Windows Event Log Knowledge Base☆29Dec 23, 2025Updated last month
- Some basics on how to get started with Ghdira Scripting☆26Nov 11, 2025Updated 3 months ago
- Proof-of-Concept exploits for CVE-2017-11882☆41Jan 2, 2018Updated 8 years ago