Blauhaunt

Logon analyzer

A tool collection for analyzing and visualizing logon events to help answer security-related questions

A tool collection for filtering and visualizing logon events. Designed to help answering the "Cotton Eye Joe" question (Where did you come from where did you go) in Security Incidents and Threat Hunts

GitHub

164 stars
4 watching
11 forks
Language: JavaScript
last commit: almost 2 years ago
Linked from 1 awesome list

analysiscyber-crimedfirforensicsgraphincident-responseinvestigationsecurityvelociraptor

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
jensvoid/lorgA tool to analyze and detect security incidents in web application logs209
dogoncouch/logdissectAnalyzes log files and other data from various sources and formats.148
thiber-org/userlineAutomates analysis of Windows Security Events to identify user logon relations241
jpcertcc/sysmonsearchAnalyzes Sysmon event logs to detect suspicious activity and visualize process and network correlations.419
bkoelman/csharpguidelinesanalyzerA tool that analyzes C# code against predefined coding guidelines and reports diagnostics145
dogoncouch/logespA security-focused application built with Python Django to manage and analyze log data from various sources.198
googlecloudplatform/security-analyticsProvides a set of community-driven security analytics queries and rules for Google Cloud log analysis327
jpcertcc/toolanalysisresultsheetAn HTML-based tool for analyzing and visualizing log data from Windows execution of malicious tools to detect lateral movement.345
klks/checksecA tool to analyze security settings in x64dbg126
the-login/dns-analyzerA tool to analyze DNS vulnerabilities in web applications and identify potential security risks.94
evilsocket/takuanA system service that analyzes logs to identify malicious activity and maintains a blacklist of known cyber offenders.83
sonarsource/sonar-dotnetAnalyzes C# and VB.NET code for quality and security issues802
chrisandoryan/nethive-projectAn SIEM system that uses machine learning and CVSS measurements to detect security threats.3
sans-blue-team/deepbluecliA PowerShell module for analyzing Windows event logs to detect and respond to potential security threats.2,203
microsoft/infersharpA tool that analyzes C# code for potential issues such as null pointer dereferences and resource leaks to help detect security vulnerabilities.737