mirror of
https://github.com/pe3zx/my-infosec-awesome.git
synced 2024-12-12 17:44:21 -05:00
Add JPCERTCC/SysmonSearch
This commit is contained in:
parent
cf9c44448d
commit
da1b3d3db6
@ -1214,6 +1214,10 @@ _return-to-libc techniques_
|
||||
<td><a href="https://github.com/JPCERTCC/LogonTracer">JPCERTCC/LogonTracer</a></td>
|
||||
<td>Investigate malicious Windows logon by visualizing and analyzing Windows event log</td>
|
||||
</tr>
|
||||
<tr>
|
||||
<td><a href="https://github.com/JPCERTCC/SysmonSearch">JPCERTCC/SysmonSearch</a></td>
|
||||
<td>Investigate suspicious activity by visualizing Sysmon's event log</td>
|
||||
</tr>
|
||||
<tr>
|
||||
<td><a href="https://github.com/IllusiveNetworks-Labs/HistoricProcessTree">IllusiveNetworks-Labs/HistoricProcessTree</a></td>
|
||||
<td>An Incident Response tool that visualizes historic process execution evidence (based on Event ID 4688 - Process Creation Event) in a tree view.</td>
|
||||
|
Loading…
Reference in New Issue
Block a user