Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
- 
            Updated
            
Nov 3, 2025  - Rust
 
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
A high-speed forensic timeline engine for Windows forensic artifact CSV output built for DFIR investigators. Quickly consolidate CSV output from processed triage evidence for Eric Zimmerman (EZ Tools) Kape, Axiom, Hayabusa, Chainsaw and Nirsoft into a unified timeline.
Pipeline that allows sending forensic artifacts to OpenRelik for automatic processing
SECUBIAN is a French Linux distribution focused on evidence processing during Incident Response.
Hayabusa to the SIEM made easy
Running https://github.com/Yamato-Security/hayabusa in a Docker container with a Flask API wrapped around for on-demand cloud functions
Menu-based scanner for Hayabusa intended for scanning mounted images and folders with EVTX files.
Add a description, image, and links to the hayabusa topic page so that developers can more easily learn about it.
To associate your repository with the hayabusa topic, visit your repo's landing page and select "manage topics."