Zircolite

Standalone SIGMA-based detection tool for EVTX, Auditd, Sysmon for linux, XML or JSONL/NDJSON Logs · Zircolite can be us...

Zircolite

Standalone SIGMA-based detection tool for EVTX, Auditd, Sysmon for linux, XML or JSONL/NDJSON Logs · Zircolite can be used directly on the investigated endpoint ... ,Carol Zircolite (P) Ltd. is a High Alumina & Zirconia Ceramics precision products and Kiln & Furnaces manufacturer since 1991. Such a long practical experience ...

相關軟體 Event Log Explorer 資訊

Event Log Explorer
Event Log Explorer 是一款用於查看,監控和分析 Microsoft Windows 操作系統的安全,系統,應用程序和其他日誌中記錄的事件的有效軟件解決方案。 Event Log Explorer 極大地擴展了標準的 Windows 事件查看器監控功能並帶來了許多新功能。 不可能找到一個系統管理員,安全專家或法醫審查員,他們的 Windows 事件日誌分析問題從未尖銳。為了讓您的... Event Log Explorer 軟體介紹

Zircolite 相關參考資料
Standalone SIGMA-based detection tool for EVTX, Auditd ...

2022年4月18日 — Zircolite has been used to perform cold-analysis (in Lab) on EVTX in multiple real-life situations. However, even if Zircolite has been used ...

https://www.kitploit.com

wagga40Zircolite: A standalone SIGMA-based detection ...

Standalone SIGMA-based detection tool for EVTX, Auditd, Sysmon for linux, XML or JSONL/NDJSON Logs · Zircolite can be used directly on the investigated endpoint ...

https://github.com

Welcome to Carol Zircolite

Carol Zircolite (P) Ltd. is a High Alumina & Zirconia Ceramics precision products and Kiln & Furnaces manufacturer since 1991. Such a long practical experience ...

http://www.caroziir.com

Windows.EventLogs.Zircolite :: Velociraptor - Digging deeper!

Zircolite is a standalone tool that can be used to apply Sigma rules to EVTX files on endpoints in an effort to quickly parse large datasets and surface ...

https://docs.velociraptor.app

Zircolite

A white, artificial corundum, which contains no zirconium despite the name.

https://www.mindat.org

Zircolite 1 Liter

Dental: Zircolite is an excellent choice for dental applications, including the production of crowns, bridges, and prosthetics, thanks to its biocompatibility ...

https://tethon3d.com

Zircolite : A Standalone SIGMA-based Detection Tool For EVTX

2022年5月30日 — Zircolite is a standalone tool written in Python 3. It allows to use SIGMA rules on MS Windows EVTX , Auditd logs and Sysmon for Linux logs.

https://kalilinuxtutorials.com

ZircolitedocsAdvanced.md at master

Zircolite provides a templating system based on Jinja 2. It allows you to change the output format to suits your needs (Splunk or ELK integration, Grep-able ...

https://github.com

基于Sigma的独立检测工具-Zircolite - FreeBuf网络安全行业 ...

2022年7月22日 — 0x01 简介. Zircolite是一个用于Python3编写的独立工具,它允许在MS Windows EVTX(EVTX和JSONL格式)、Linux Audit日志和Sysmon日志上使用Sigma规则。

https://m.freebuf.com