Extracting Windows Event Logs Artifacts

Extract, parse, and analyze Windows Event Logs (EVTX) using Chainsaw, Hayabusa, and EvtxECmd to detect lateral movement, persistence, and privilege escalation.

theheavenlyd3mon d828a68 4 files · 37.4 KB Updated 28 repo stars

File contents

theheavenlyd3mon/hermes-profiles/tree/main/profiles/cyber-blue-soc/skills/Anthropic-Cybersecurity-Skills/skills/extracting-windows-event-logs-artifacts commit d828a68f67

Frequently asked questions

npx skillmds add theheavenlyd3mon/extracting-windows-event-logs-artifacts