mirror of
https://github.com/pe3zx/my-infosec-awesome.git
synced 2025-01-10 07:09:32 -05:00
Add: wagga40/Zircolite to DFIR section
This commit is contained in:
parent
0fee41049b
commit
0dbd10c698
@ -1444,6 +1444,10 @@ This repository is created as an online bookmark for useful links, resources and
|
|||||||
<td><a href="https://wazuh.com/">Wazuh</a></td>
|
<td><a href="https://wazuh.com/">Wazuh</a></td>
|
||||||
<td>Open Source Host and Endpoint Security</td>
|
<td>Open Source Host and Endpoint Security</td>
|
||||||
</tr>
|
</tr>
|
||||||
|
<tr>
|
||||||
|
<td><a href="https://github.com/wagga40/Zircolite">wagga40/Zircolite</a></td>
|
||||||
|
<td>A standalone SIGMA-based detection tool for EVTX.</td>
|
||||||
|
</tr>
|
||||||
<tr>
|
<tr>
|
||||||
<td><a href="https://github.com/williballenthin/EVTXtract">williballenthin/EVTXtract</a></td>
|
<td><a href="https://github.com/williballenthin/EVTXtract">williballenthin/EVTXtract</a></td>
|
||||||
<td>EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.</td>
|
<td>EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.</td>
|
||||||
|
Loading…
Reference in New Issue
Block a user