itiB b22051e207 Feature/str exact match#79 (#100)
* Add: LeafMatch struct 'StartsWithMatcher'

* Add: LeafMatch struct 'EndsWithMatcher'

* Add: LeafMatch struct 'ContainsMatcher'

* WIP: StrFeature

* Add: get strFeature's from rule file

* refact

* Revert "refact"
This reverts commit 5439b4d6d52dff4a90307206404e38ff20fe792e.

Revert "Add: get strFeature's from rule file"
This reverts commit 152ad10a03f67f23e6de3db93be9b4e7eaf6a7a8.

Revert "WIP: StrFeature"
This reverts commit bf7271348d30b24f6063cfe8ce5b27e956143d60.

* Add: matcher selector for string options

* Add: rm |xxx text from rule file

* fix: leafNodes's |xxx command overwritten

* test: startswith, endswith, contains LeafNodeTest

* test: use string MethodNode in OrSelectionNode

* cargo fmt --all

* Update: when undefined rule option occur, raise err
2021-05-28 23:19:43 +09:00
2020-10-17 15:49:59 +09:00
fix
2020-10-25 23:50:49 +09:00
2021-05-28 23:19:43 +09:00
2021-05-09 17:26:17 +09:00
2021-05-09 17:26:17 +09:00
2020-11-25 21:37:34 +09:00
2020-09-18 19:13:17 +09:00
2020-10-03 13:06:25 +09:00

YamatoEventAnalyzer

Yea! (Yamato Event Analyzer). Aiming to be the world's greatest Windows event log analysis tool!

世界一のWindowsイベントログ解析ツールを目指しています

Description
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
Readme 106 MiB
Languages
Rust 99.7%
CSS 0.3%