Log inSign up
mfidel
15 posts
@mfidel19

mfidel

@mfidel19
Detection Engineering/DFIR
Joined April 2021
197
Following
22
Followers
RepliesRepliesRepostsRepostsMediaMedia

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
  • @mfidel19
    mfidel
    @mfidel19
    May 25, 2025
    Rainy weekend experiment: anyone else ever thought of using Hayabusa from @SecurityYamato as a poor's man endpoint detection agent for the SOC ?
    github.com
    GitHub - mf1d3l/HayabusaToWinEventLog: Hayabusa to the SIEM made easy
    Hayabusa to the SIEM made easy. Contribute to mf1d3l/HayabusaToWinEventLog development by creating an account on GitHub.
  • @mfidel19
    mfidel
    @mfidel19
    Dec 1, 2024
    Splunk4DFIR has now a dedicated dashboard + sigma rules support for GCP Audit logs. Thanks @hackthebox_eu for the MisCloud Sherlock dataset.
    1
  • @mfidel19
    mfidel
    @mfidel19
    Sep 28, 2024
    Splunk4DFIR has now a dashboard to get quickly started with aws cloudtrail logs.
  • @mfidel19
    mfidel
    @mfidel19
    Jul 21, 2024
    Splunk4DFIR update: - pre-configured syslog inputs - linux builtin and webserver sigma rules support - web access logs dashboard
  • @mfidel19
    mfidel
    @mfidel19
    Jun 23, 2024
    You can now easily import MemProcFS json outputs into Splunk4DFIR
    1