python-evtx VS Zircolite

Compare python-evtx vs Zircolite and see what are their differences.

python-evtx

Pure Python parser for Windows Event Log files (.evtx) (by williballenthin)

Zircolite

A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs (by wagga40)
Our great sponsors
  • WorkOS - The modern identity platform for B2B SaaS
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • SaaSHub - Software Alternatives and Reviews
python-evtx Zircolite
2 4
670 596
- -
1.6 7.5
about 1 year ago 23 days ago
Python Python
Apache License 2.0 -
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

python-evtx

Posts with mentions or reviews of python-evtx. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2020-11-26.

Zircolite

Posts with mentions or reviews of Zircolite. We have used some of these posts to build our list of alternatives and similar projects.

What are some alternatives?

When comparing python-evtx and Zircolite you can also consider the following projects:

mimikatz - A little tool to play with Windows security

sigma-essentials - Everything you need for the #grindset

evtx-hunter - evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.

Automata - Automatic detection engineering technical state compliance

prowler - Prowler is an Open Source Security tool for AWS, Azure, GCP and Kubernetes to do security assessments, audits, incident response, compliance, continuous monitoring, hardening and forensics readiness. Includes CIS, NIST 800, NIST CSF, CISA, FedRAMP, PCI-DSS, GDPR, HIPAA, FFIEC, SOC2, GXP, Well-Architected Security, ENS and more

rich - Rich is a Python library for rich text and beautiful formatting in the terminal.

mvt - MVT (Mobile Verification Toolkit) helps with conducting forensics of mobile devices in order to find signs of a potential compromise.

celery - Distributed Task Queue (development branch)

evtx2es - A library for fast parse & import of Windows Eventlogs into Elasticsearch.

automathon - A Python library for simulating and visualizing finite automata

WatchAD - AD Security Intrusion Detection System

labelImg - LabelImg is now part of the Label Studio community. The popular image annotation tool created by Tzutalin is no longer actively being developed, but you can check out Label Studio, the open source data labeling tool for images, text, hypertext, audio, video and time-series data.