From 9f511dfcc7068da9c3ace6fcfa37e67990797229 Mon Sep 17 00:00:00 2001 From: fukusuket <41001169+fukusuket@users.noreply.github.com> Date: Mon, 12 May 2025 10:49:15 +0900 Subject: [PATCH] doc: add readme --- README.md | 8 +++----- 1 file changed, 3 insertions(+), 5 deletions(-) diff --git a/README.md b/README.md index 58d5bbac..4c355197 100644 --- a/README.md +++ b/README.md @@ -64,6 +64,9 @@ WELA helps identify these issues and provides actionable recommendations to impr ![WELA FileSize](screenshots/filesize.png) # Features +- **Audit Windows Event Log settings**: Check the current settings of Windows Event Logs and compare them with recommended settings. +- Checking Windows Event Log audit settings based on **real-world Sigma rule detectability**. +- **Audit Windows Event Log file sizes**: Check the current file sizes of Windows Event Logs and compare them with recommended settings. # Prerequisites * PowerShell 5.1+ @@ -78,11 +81,6 @@ Please download the latest stable version of WELA from the [Releases](https://gi 2. Open PowerShell with **Administrator privileges**. 3. `./WELA.ps1 help` to run WELA. -# Command List -* `audit-settings`: Audit Windows Event Log settings -* `audit-filesize`: Audit Windows Event Log file sizes -* `update-rules` : Update Sigma contents in config directory - # Command Usage ## audit-settings ## audit-filesize