Windows security investigation analyzing failed authentication attempts using Event Viewer and Event ID 4625.
-
Updated
Mar 17, 2026
Windows security investigation analyzing failed authentication attempts using Event Viewer and Event ID 4625.
Windows Event Log forensic timeline and incident response analysis tool (EVTX triage)
This project is a personal SOC home lab built to explore how security teams detect, investigate, and respond to threats.
Add a description, image, and links to the security-investigation topic page so that developers can more easily learn about it.
To associate your repository with the security-investigation topic, visit your repo's landing page and select "manage topics."