Awesome Event IDs
2022-11-9 22:51:42 Author: reconshell.com(查看原文) 阅读量:22 收藏

Event

Collection of Event ID ressources useful for Digital Forensics and Incident Response


In incidents, analysts are often faced with the problem of interpreting unknown event IDs. The event itself does not always contain the desired information. In addition, it is impossible to remember them all, given the huge number of event IDs and log sources.

Event ID databases

Event ID documentation

Event ID configuration and monitoring suggestions

Event ID analysis

Contributing

This repo is dedicated to everything that has an event ID and the knowledge about it. Please ask yourself before submitting a PR if it really fits to this. In particular, please do not contribute tools, as these are already comprehensively summarized in the following great repositories.

The Event IDs is a github repository by Mathias Stuhlmacher



文章来源: https://reconshell.com/awesome-event-ids/
如有侵权请联系:admin#unsafe.sh