From f03135064c743a53312171443cca27873a5fa0f6 Mon Sep 17 00:00:00 2001 From: pe3zx Date: Sun, 31 Mar 2019 21:28:21 +0700 Subject: [PATCH] [Tools][DFIR] yampelo/beagle --- README.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/README.md b/README.md index d652677..5febb5c 100644 --- a/README.md +++ b/README.md @@ -1423,6 +1423,10 @@ _return-to-libc techniques_ williballenthin/process-forest process-forest is a tool that processes Microsoft Windows EVTX event logs that contain process accounting events and reconstructs the historical process heirarchies. + + yampelo/beagle + Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs. + ### Exploits