
LDAPMon
Proof-of-concept telemetry collector for Windows LDAP client activity via ETW, logging structured events to Event Viewer with a Sentinel parser for…
defensive-toolsincident-responselog-analysis
532 years ago

Proof-of-concept telemetry collector for Windows LDAP client activity via ETW, logging structured events to Event Viewer with a Sentinel parser for…

Automatically generated Sysmon parser for Azure Sentinel

Chronicle parser for CORELIGHT and related information.
