System-CTL / Windows_Intrusion-Detection

The script based on NIST SP-800-61r2 detection phase which actually parse all the key artifacts by utilizing windows utilities.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Windows_Intrusion-Detection

The script based on NIST SP-800-61r2 detection phase which actually parse all the key artifacts by utilizing windows utilities. The user can get separate logs in txt file for each mentioned artifact in .pdf file and have also all-in-one in csv file format.

NOTE

The script still in developement.

About

The script based on NIST SP-800-61r2 detection phase which actually parse all the key artifacts by utilizing windows utilities.


Languages

Language:Python 100.0%