A running list of Windows sources and the related event ids.
☆19Aug 2, 2023Updated 2 years ago
Alternatives and similar repositories for Windows-Event-Logs-With-Event-IDs
Users that are interested in Windows-Event-Logs-With-Event-IDs are comparing it to the libraries listed below
Sorting:
- Collection of scripts/resources/ideas for attack surface reduction and additional logging to enable better threat hunting on Windows endp…☆38Apr 5, 2024Updated last year
- Splunk App for MITRE Att&CK Navigator(TM)☆23Mar 25, 2021Updated 4 years ago
- Windows Defender ATP - Advanced Hunting Queries☆22Apr 12, 2018Updated 7 years ago
- A collection of famous recon public scripts, but in bash <3☆29Mar 2, 2021Updated 5 years ago
- ☆34Aug 8, 2023Updated 2 years ago
- Ingesting Shodan Monitor Alerts to Microsoft Sentinel☆34Sep 19, 2023Updated 2 years ago
- MAL-CL (Malicious Command-Line)☆322Jan 10, 2023Updated 3 years ago
- Sigma Detection Rule Repository☆92Jun 18, 2020Updated 5 years ago
- multi-threaded script uses VirusTotal and AbuseIPDB APIs and generate an excel with all needed data☆10Mar 14, 2023Updated 2 years ago
- ☆10May 8, 2018Updated 7 years ago
- The client-side app for Filmstrip☆10Feb 17, 2017Updated 9 years ago
- Confluent s2s Demo☆11Apr 28, 2023Updated 2 years ago
- Lua plugin to extract data from Wireshark and convert it into MISP format☆49Oct 23, 2023Updated 2 years ago
- Digital Forensics and Incident Response notes and Autopsy tool walkthrough☆11Feb 3, 2022Updated 4 years ago
- Monitor/Archive of Azure IAM (Role Definitions and Provider Operations). Tweets at https://twitter.com/maiam_bot☆10Updated this week
- Security Lab☆13Jun 5, 2023Updated 2 years ago
- Uber Eats for Home Assistant☆11Jan 20, 2026Updated last month
- Reversed WintaPix Malware Source code | That targets countries in the Middle East and abuse KeServiceDescriptorTable(SSDT), persistence a…☆22Jul 6, 2024Updated last year
- DLL Unhooking☆13Mar 26, 2021Updated 4 years ago
- A GPT-based chatbot who knows the content of your Confluence wiki.☆14Apr 22, 2025Updated 10 months ago
- A script written in python3 to spread blind cross-site scripting payloads on HTTP requests headers☆10Oct 2, 2022Updated 3 years ago
- Library and tools to access the GUID Partition Table (GPT) volume system format☆11Dec 20, 2025Updated 2 months ago
- ☆10Dec 24, 2022Updated 3 years ago
- MSVC C++ resource example☆11Jun 28, 2018Updated 7 years ago
- Splunk Cloud various automation stuffs☆11Jun 26, 2025Updated 8 months ago
- This repository provide a json file for all Windows security Event IDs with lot of useful informations (Categories, GPO, Volume, Recomman…☆11Mar 2, 2023Updated 3 years ago
- This repo offers a tool to reveal password encrypted by Royal TS.☆16Jan 23, 2020Updated 6 years ago
- Forensic tool for extracting and analyzing Google DriveFS cached files and metadata.☆19May 9, 2025Updated 9 months ago
- A PoC that uses the DirSync protocol to poll Active Directory for changes☆13Aug 16, 2020Updated 5 years ago
- Interact with Windows RPC Services over SMB using go-smb☆11Feb 27, 2026Updated last week
- Windows NTLMSSP library☆10Aug 27, 2021Updated 4 years ago
- Designed for automated enumeration for ethical hacking and penetration testing☆11Jan 17, 2018Updated 8 years ago
- CSV fuzzer/anonymizer☆10Feb 14, 2026Updated 2 weeks ago
- It contain google dork to find the wsdl file.☆13May 27, 2020Updated 5 years ago
- ☆15Sep 24, 2024Updated last year
- The idea is simply to save some quick notes that will make it easier for Splunk users to leverage KQL (Kusto), especially giving projects…☆44Nov 7, 2020Updated 5 years ago
- copy of https://bitbucket.org/dirkbaechle/profile/repositories☆11Feb 15, 2021Updated 5 years ago
- Lightweight and extensible horizontal vulnerability scanner☆11Dec 8, 2022Updated 3 years ago
- A Bro package to identify connections that are bursting (lots of data and transferring quickly).☆13Oct 15, 2020Updated 5 years ago