Michel de CREVOISIER

Results 7 repositories owned by Michel de CREVOISIER

Microsoft-eventlog-mindmap

986
Stars
180
Forks
Watchers

Set of Mindmaps providing a detailed overview of the different #Microsoft auditing capacities for Windows, Exchange, Azure,...

EVTX-to-MITRE-Attack

479
Stars
81
Forks
Watchers

Set of EVTX samples (>270) mapped to MITRE ATT&CK tactic and techniques to measure your SIEM coverage or developed new use cases.

SIGMA-detection-rules

269
Stars
55
Forks
Watchers

Set of SIGMA rules (>320) mapped to MITRE ATT&CK tactic and techniques

Windows-WEC-server_auto-deploy

20
Stars
8
Forks
Watchers

PowerShell scripts for fast Windows Event Collector configuration with Palantir toolset

Splunk-input-windows-baseline

65
Stars
8
Forks
Watchers

Provides an advanced input.conf file for Windows and 3rd party related software with more than 70 different event log mapped to the MITRE Att&CK

Windows-auditing-baseline

22
Stars
4
Forks
Watchers

Provides an advanced baseline to implement a secure Windows auditing strategy on Windows OS.

Assist analyst and threat hunters to understand Windows authentication logs and to analyze brutforce scenarios.