BlueTeam/Toolkits
HomeToolsCareer QuizDashboard
Email Analysis
Network & DNS
IP & Domain Intelligence
Threat Intel
Cloud Event Parser
Host & Endpoint Logs
Linux Auditd Log ParserWindows Event & Sysmon Log Parser
Utilities

status

All systems operational.

// category

Host & Endpoint Logs

Available tools in the Host & Endpoint Logs category.

Linux Auditd Log Parser

Group raw auditd or ausearch records into readable events with actor, command, file and outcome fields, an explainable risk score and ATT&CK mapping.

Windows Event & Sysmon Log Parser

Parse Windows Event Log XML, Sysmon and Winlogbeat output into normalized logon, process and outcome fields with an explainable risk score and ATT&CK mapping.

© 2026 BlueTeam Toolkits. All rights reserved.

Edit with