microsoft / EventLogExpertLinks
☆230Updated this week
Alternatives and similar repositories for EventLogExpert
Users that are interested in EventLogExpert are comparing it to the libraries listed below
Sorting:
- OneDrive log .ODL reader☆156Updated last year
- Repository for Software Certs for easy software blocking across corp environments, for example, using MDE IOC☆64Updated this week
- A set of troubleshooting, diagnostic, and information utilities (and useful scripts) for Windows☆67Updated 5 months ago
- PowerShell module that intearacts with the VirusTotal service using a VirusTotal API (free)☆77Updated 3 weeks ago
- Custom ADMX template focused on hardening Windows 10 & Windows 11 systems☆91Updated this week
- Documentation and tools to access Windows Defender Application Control (WDAC) technology.☆251Updated last week
- ☆111Updated this week
- A PowerShell module for incident response and threat hunting.☆38Updated last year
- Sysmon configuration file templates with advanced event tracing and blocking☆41Updated 3 weeks ago
- This module allows the creation of password expiry emails for users, managers, administrators, and security according to defined template…☆157Updated 9 months ago
- Repository hosting a static list of Microsoft First party apps and Graph permissions that's updated daily☆202Updated last week
- Automatic and Custom Destinations jump list parser with Windows 10 support☆115Updated 4 months ago
- Microsoft Threat Intelligence☆204Updated this week
- OneDriveExplorer is a command line and GUI based application for reconstructing the folder structure of OneDrive from the <UserCid>.dat a…☆226Updated last month
- A command line tool to explore real-time streams of events.☆89Updated 11 months ago
- ☆61Updated 2 years ago
- Repository to publish sample use cases, templates, solutions, automations for Microsoft Defender Threat Intelligence (MDTI) product☆79Updated last year
- Windows 10 (v1803+) ActivitiesCache.db parsers (SQLite, PowerShell, .EXE)☆196Updated 2 years ago
- http://moaistory.blogspot.com/2018/10/winsearchdbanalyzer.html☆127Updated last year
- A guide to using Azure Data Explorer and KQL for DFIR☆124Updated 3 years ago
- Search Index Database Reporter☆130Updated 3 months ago
- Collection of Microsoft Identity Threat Detection and Response resources.☆51Updated this week
- A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID☆573Updated 2 months ago
- MDE Tester is designed to help testing various features in Microsoft Defender for Endpoint.☆193Updated last year
- Venture: Cross-Platform GUI tool for parsing and analyzing Windows event logs☆91Updated last year
- The Office 365 Extractor is a tool that allows for complete and reliable extraction of the Unified Audit Log (UAL)☆266Updated 4 years ago
- Microsoft 365 Security Assessment Tool - A Easy-To-Use Microsoft 365 Security Assessment Tool☆170Updated 9 months ago
- C# based evtx parser with lots of extras☆340Updated 5 months ago
- M365 MDATP Live Response sample scripts☆82Updated last year
- Place where I'm putting all the scripts and config files regarding Active Directory Security.☆105Updated last year