DeepBlueCLI

Event log analyzer

A PowerShell module for analyzing Windows event logs to detect and respond to potential security threats.

GitHub

2k stars
130 watching
356 forks
Language: PowerShell
last commit: about 1 year ago
Linked from 2 awesome lists


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
yamato-security/wela Analyzes Windows Event Logs to identify security-related events and provides forensic tools for incident response. 763
reed1713/elat A toolset for analyzing Windows event logs to detect and analyze malware 29
jpcertcc/sysmonsearch Analyzes Sysmon event logs to detect suspicious activity and visualize process and network correlations. 417
airbus-cert/timeliner A tool for filtering and analyzing Windows event logs based on complex time-based conditions 36
jpcertcc/toolanalysisresultsheet An HTML-based tool for analyzing and visualizing log data from Windows execution of malicious tools to detect lateral movement. 345
ahmedkhlief/apt-hunter A tool to analyze Windows event logs for signs of APT attacks and malware activity. 1,258
nshalabi/sysmontools Utilities for analyzing and visualizing Windows event logs from Sysmon, helping users track and monitor system activity. 1,488
jensvoid/lorg A tool to analyze and detect security incidents in web application logs 209
thiber-org/userline Automates analysis of Windows Security Events to identify user logon relations 240
dogoncouch/logdissect Analyzes log files and other data from various sources and formats. 148
netspi/pesecurity A PowerShell module to analyze Windows binary files for various security features and compilation settings. 626
webpod/red An analysis tool for monitoring server logs in real-time. 1,476
confluentinc/confluent-sigma A tool for analyzing and visualizing log events using structured rules 52
powershell/psscriptanalyzer A tool that checks and analyzes PowerShell code for quality and best practices 1,864
erickramirezds/cass_log_tools A collection of scripts for analyzing and summarizing Apache Cassandra logs. 9