Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Appearance settings
@Yamato-Security

Yamato Security 大和セキュリティ

Hi there まいど! 👋

About Yamato Security

Yamato Security is a security group created by Zach Mathis (@yamatosecurity) in 2012. At first, the main purpose was to provide security training to build a local security community in Western Japan but has grown to provide training, CTF events, webinars, etc... across the country for thousands of people.

Now, with a group of volunteer members, we are providing free open source DFIR tools such as Hayabusa, WELA, Takajo, Suzaku, etc...

Please contact us if you want to help out and contribute.

Main Projects

  • Hayabusa - (隼) A sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
  • Takajo - (鷹匠) An analyzer for Hayabusa results.
  • Suzaku - (朱雀) A sigma-based threat hunting and fast forensics timeline generator for cloud logs.
  • WELA - ゑ羅(ウェラ)(Windows Event Log Auditor): An auditing and configuration tool for Windows event logs.
  • Yamato Security's Windows Event Log Configuration Guide For DFIR And Threat Hunting - Documentation for how to configure proper Windows audit log settings and which categories and Event IDs are important to monitor.
  • Presentations - Presentations in English and Japanese.

Popular repositories Loading

  1. hayabusa hayabusa Public

    Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

    Rust 3.2k 272

  2. WELA-deprecated WELA-deprecated Public

    WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)

    PowerShell 774 78

  3. EnableWindowsLogSettings EnableWindowsLogSettings Public

    Documentation and scripts to properly enable Windows event logs.

    Batchfile 705 66

  4. hayabusa-rules hayabusa-rules Public

    Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.

    Python 219 29

  5. suzaku suzaku Public

    Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.

    Rust 178 9

  6. takajo takajo Public

    Takajō (鷹匠) is a Hayabusa results analyzer.

    Nim 159 10

Repositories

Loading
Type
Select type
Language
Select language
Sort
Select order
Showing 10 of 22 repositories

People

This organization has no public members. You must be a member to see who’s a part of this organization.

Top languages

Loading…

Most used topics

Loading…

Morty Proxy This is a proxified and sanitized view of the page, visit original site.