A running list of Windows sources and the related event ids.
☆19Aug 2, 2023Updated 2 years ago
Alternatives and similar repositories for Windows-Event-Logs-With-Event-IDs
Users that are interested in Windows-Event-Logs-With-Event-IDs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Collection of scripts/resources/ideas for attack surface reduction and additional logging to enable better threat hunting on Windows endp…☆38Apr 5, 2024Updated 2 years ago
- A repository of Sysmon For Linux configuration modules☆17Oct 14, 2021Updated 4 years ago
- ☆13Oct 7, 2019Updated 6 years ago
- Windows Defender ATP - Advanced Hunting Queries☆22Apr 12, 2018Updated 8 years ago
- ☆15Sep 24, 2024Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- multi-threaded script uses VirusTotal and AbuseIPDB APIs and generate an excel with all needed data☆10Mar 14, 2023Updated 3 years ago
- This repository provide a json file for all Windows security Event IDs with lot of useful informations (Categories, GPO, Volume, Recomman…☆11Mar 2, 2023Updated 3 years ago
- MAL-CL (Malicious Command-Line)☆325Jan 10, 2023Updated 3 years ago
- Forensic tool for extracting and analyzing Google DriveFS cached files and metadata.☆20May 9, 2025Updated last year
- Volatility 3 Plugins☆21Oct 3, 2022Updated 3 years ago
- ☆15May 27, 2019Updated 7 years ago
- Ingesting Shodan Monitor Alerts to Microsoft Sentinel☆33Sep 19, 2023Updated 2 years ago
- Splunk App for MITRE Att&CK Navigator(TM)☆23Mar 25, 2021Updated 5 years ago
- Common framework for designing a detection and response framework for the most common MFT solutions☆16Aug 4, 2023Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- It contain google dork to find the wsdl file.☆13May 27, 2020Updated 6 years ago
- Azure OpenAI Playbook created for Microsoft Sentinel☆14May 2, 2024Updated 2 years ago
- Uses ghidra to find all ETW write metadata for each API in a PE file☆29Jul 26, 2024Updated last year
- Python BlueSky client☆10Aug 4, 2023Updated 2 years ago
- GraphSpecter is a tool to audit GraphQL API☆22Oct 6, 2025Updated 8 months ago
- Golang based web service to scan files with yara rules☆25Jul 6, 2017Updated 8 years ago
- Ansible role for security standards compliance☆13Mar 6, 2019Updated 7 years ago
- ☆11Dec 25, 2020Updated 5 years ago
- Sigma rules to share with the community☆126Jan 29, 2025Updated last year
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Sigma Detection Rule Repository☆93Jun 18, 2020Updated 5 years ago
- My various command line scripts that I'm using on my Debian desktops and servers☆12May 4, 2026Updated last month
- Repository of attack and defensive information for Business Email Compromise investigations☆276Apr 19, 2026Updated last month
- Sigma detection rules for hunting with the threathunting-keywords project☆60Mar 2, 2025Updated last year
- ☆11May 15, 2020Updated 6 years ago
- Easy discovery of assets☆13Jun 22, 2022Updated 3 years ago
- A proof-of-concept re-assembler for reverse VNC traffic.☆24May 21, 2023Updated 3 years ago
- ☆23Jan 29, 2024Updated 2 years ago
- Lightweight and extensible horizontal vulnerability scanner☆11Dec 8, 2022Updated 3 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- A script written in python3 to spread blind cross-site scripting payloads on HTTP requests headers☆10Oct 2, 2022Updated 3 years ago
- ALFA stands for Automated Audit Log Forensic Analysis for Google Workspace. You can use this tool to acquire all Google Workspace audit l…☆181Mar 2, 2026Updated 3 months ago
- ☆34Aug 8, 2023Updated 2 years ago
- Cumulonimbus-UAL_Extractor is a PowerShell based tool created by the Tesorion CERT team to help gather the Unified Audit Logging out of a…☆21Oct 25, 2023Updated 2 years ago
- Finds Domain Controller on a network, enumerates users, AS-REP Roasting and hash cracking, bruteforces password, dumps AD users, DRSUAPI,…☆18Sep 23, 2023Updated 2 years ago
- Template☆18Sep 3, 2024Updated last year
- A PoC that uses the DirSync protocol to poll Active Directory for changes☆13Aug 16, 2020Updated 5 years ago