Windows Log Hunter

Blue-team CLI threat hunt over Windows Event Logs. Sweeps high-signal security events (failed logons, new accounts/services, cleared logs, PowerShell, Sysmon) via native PowerShell or Hayabusa/Sigma, and produces a triaged findings report.

ptn1411 b56baab 5 files · 20.8 KB Updated

File contents

ptn1411/skill/tree/main/windows-log-hunter commit b56baabd94

Frequently asked questions

npx skillmds@latest add ptn1411/windows-log-hunter