insanitybit/grapl: Graph platform for Detection and Response
Stuff logs into this for tracing/hunting, soon to have some D3 for visualizing things in the Jupyter notebook?
DFIR  log  analysis  graph  database  security  hacking  pentesting  D3.js  Jupyter 
june 2019 by asteroza
Adapter for simplifying ETW log collection
silkETW  ETW  log  trace  transform  filter  software  opensource  FireEye  adapter  C#  wrapper  security 
march 2019 by asteroza
"Six steps to #blueteam progress:"
How to check if your defense stance is not made of FAIL
EDR  network  log  testing  test  security  hacking  pentesting  SIEM  logging  humor  DFIR 
march 2019 by asteroza
4964(S) Special groups have been assigned to a new logon. (Windows 10) | Microsoft Docs
Throwing important AD users into a special security audit group will raise security events in the event log to allow easier tracking. Useful for exploring an environment where people have hard coded certain accounts or registered a task/service with an inappropriate account
windows  AD  active  directory  special  user  login  audit  security  group  event  log  hacking  pentesting  defense  WEFFLES 
november 2018 by asteroza
SetupDiag | Microsoft Docs
handy tool for diagnosing windows 10 upgrade errors, as this will parse the logs
windows  10  sysadmin  tips  tricks  software  upgrade  setup  log  parser  debug 
october 2018 by asteroza
Remote Authentication GeoFeasibility Tool - GeoLogonalyzer « Remote Authentication GeoFeasibility Tool - GeoLogonalyzer | FireEye Inc
interesting additional analysis of remote access logs based on GeoIP as well as physical realities (nobody flying commercial supersonic flights so logon locations being too far within a fixed timespan will be suspicious...)
FireEye  geoIP  GeoLocation  location  remote  access  VPN  log  logon  analysis  security  defense 
june 2018 by asteroza
Script Get-USBHistory
powershell script, useful for grabbing USB history from all PC's in a domain, useful for creating a baseline/history of USB use.
windows  USB  history  log  PowerShell  script  sysadmin  tips  tricks  logging  baseline  security  audit  auditing 
may 2018 by asteroza
Pricing | Librato
interesting pricing model, allow high resolution log sending, but if you need low rez for some hosts, then you pay for the low rez storage.
cloud  log  monitoring  service 
september 2017 by asteroza
GoAccess - Visual Web Log Analyzer
sorta realtime web server log analyzer, can cover Squid in a pinch
realtime  web  server  log  analyzer  software  opensource 
august 2017 by asteroza
LogSentinel (alpha) - Blockchain-inspired secure audit trail service
sorta like a timestamping service, but who is doing the blockchain really?
blockchain  log  audit  trail  service  hash  security 
july 2017 by asteroza
Worksmart — Crossover
Welcome to white collar hell, where they cap your screen every 10, and use the webcam to check if you are seated there.
WorkSmart  remote  worker  monitoring  security  time  logging  screenshot  webcam  capture  application  log  HR  team  outsourcing  management  Delicious 
may 2017 by asteroza
Kindling Cracker | The world's safest wood chopper – Kindling Cracker Ltd
Smart little wood splitter, though I suspect a wider base would be a little safer.
wood  log  cracker  splitter  kindling  outdoor  hardware  tools  camping  Delicious 
january 2017 by asteroza
