Extracting Windows Event Logs Artifacts

Extract, parse, and analyze Windows Event Logs (EVTX) using Chainsaw, Hayabusa, and EvtxECmd to detect lateral movement, persistence, and privilege escalation.

thedixitjain 94cafe1 4 files · 37.6 KB Updated 2 repo stars

File contents

thedixitjain/the-mega-skill-library/tree/main/library/mobile-and-platform/extracting-windows-event-logs-artifacts commit 94cafe1b2c

Frequently asked questions

npx skillmds add thedixitjain/extracting-windows-event-logs-artifacts