userline

Log analyzer

Automates analysis of Windows Security Events to identify user logon relations

Query and report user logons relations from MS Windows Security Events

GitHub

241 stars
28 watching
32 forks
Language: Python
last commit: about 8 years ago
blackhatcsvdfirdockerdockerfileelasticsearchevtx-analisysforensicsgephigraphloginlogon-relationsneo4jplasopythonwindows-eventlog

Related projects:

RepositoryDescriptionStars
nshalabi/sysmontoolsUtilities for analyzing and visualizing Windows event logs from Sysmon, helping users track and monitor system activity.1,492
reed1713/elatA toolset for analyzing Windows event logs to detect and analyze malware29
airbus-cert/timelinerA tool for filtering and analyzing Windows event logs based on complex time-based conditions37
yamato-security/welaAnalyzes Windows Event Logs to identify security-related events and provides forensic tools for incident response.769
jpcertcc/sysmonsearchAnalyzes Sysmon event logs to detect suspicious activity and visualize process and network correlations.419
cgosec/blauhauntA tool collection for analyzing and visualizing logon events to help answer security-related questions164
wagga40/zircoliteA standalone tool for analyzing and detecting security-related events in various Linux logs using SIGMA rules684
sans-blue-team/deepbluecliA PowerShell module for analyzing Windows event logs to detect and respond to potential security threats.2,203
dogoncouch/logespA security-focused application built with Python Django to manage and analyze log data from various sources.198
illusivenetworks-labs/historicprocesstreeAnalyzes Windows event log data to visualize historic process execution evidence in a tree view.59
jmscslgroup/strymA real-time CAN data logging and visualization tool that interfaces with USB-CAN Interface using Python27
carina-studio/ulogviewerA tool for analyzing and visualizing log data from various sources422
securityjoes/forensicminerAutomates evidence collection and analysis from Windows machines using PowerShell.149
dogoncouch/logdissectAnalyzes log files and other data from various sources and formats.148
williballenthin/python-evtxA Python module for parsing Windows Event Log files (.evtx) into structured data732