Skip to content
#

evtx-analysis

Here are 8 public repositories matching this topic...

Windows EVTX log analysis for DFIR — fast parsing, ATT&CK mapping, IOC extraction, and Sentinel anomaly detection. Normal + Juggernaut Mode (Arrow/DuckDB) for 10M+ events.

  • Updated May 20, 2026
  • Python

Improve this page

Add a description, image, and links to the evtx-analysis topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the evtx-analysis topic, visit your repo's landing page and select "manage topics."

Learn more