{"repo":"Yamato-Security/hayabusa","free":true,"listed":false,"github":"https://github.com/Yamato-Security/hayabusa","clone":"git clone https://github.com/Yamato-Security/hayabusa.git","description":"Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.","language":"Rust","stars":3313,"topics":["dfir","threat","hunting","windows","event","logs","rust","sigma","detection","attack"],"license":"AGPL-3.0","category":"dev-tools","readme_excerpt":"Windows event log fast forensics timeline generator and threat hunting tool. Written in memory-safe Rust by Yamato Security — the only open-source tool with full Sigma support, including v2 correlation rules. 📖 Read the Documentation&nbsp;→ Available in 15 languages — English · 日本語 · 繁體中文 · 한국어 · Deutsch · Türkçe · Français · Español · Português (Brasil) · Українська · हिन्दी · Bahasa Indonesia · မြန်မာဘာသာ · ไทย · العربية --- 🦅 About Hayabusa is a Windows event log fast forensics timeline generator and threat hunting tool . It is multi-threaded for speed and consolidates events from a single host or thousands of systems into one CSV / JSON / JSONL timeline — ready for analysis in LibreOffice, Timeline Explorer, Elastic Stack, Timesketch and more. It can run live on a single system, gather logs for offline analysis, or hunt across the enterprise with Velociraptor. 📖 Documentation All documentation now lives on a dedicated, searchable, multi-language site: ### 👉 yamato-security.github.io/hayabusa Section --- --- 🚀 Getting Started Download, install and run Hayabusa ⌨️ Command Reference Every command and option, with examples 📊 Timeline Output Output profiles, fields and abbreviations 🧩 Rules Detection rules and Sigma compatibility 🔎 Importing & Analysis Elastic Stack, Timesketch, Timeline Explorer, jq ⬇️ Download Grab the latest signed binaries from the Releases page , or see Getting Started for live-response packages and building from source. 🗂️ Looking for the old RE","default_branch":null,"files":null,"tree":[],"storefront":"/r/Yamato-Security","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/Yamato-Security/hayabusa/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}