A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs
What is the wagga40/Zircolite GitHub project? Description: "A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs". Written in Python. Explain what it does, its main use cases, key features, and who would benefit from using it.
Question is copied to clipboard — paste it after the AI opens.
Clone via HTTPS
Clone via SSH
Download ZIP
Download master.zipReport bugs or request features on the Zircolite issue tracker:
Open GitHub Issues