Collection of Public Jupyter notebooks for analyzing DCO logs.
- Apache Logs looks at a way to analyze Apache logs to find anomalies utilizing unsupervised learning
- Sysmon Process Brawl looks at Sysmon logs from a Mitre event called "Brawl". The example looks at the various executables launched in an environment
- ZAT DNS processing looks at subdomain analytics
- Sysmon Export Process utilizes an export from a system to do analytics