home/categories/debugging/tsale-awesome-dfir-skills-skills-analysis-windows-intrusion-timeline-skill-md
debuggingtools

windows-intrusion-timeline-targeted

Create a targeted intrusion timeline for a Windows incident using whatever artifacts are available (event logs, EDR, SIEM exports, triage notes).

tsale
maintainer
tsale
更新于 1/18/2026
星标
213
分支
14
quick start

Installation and usage

Create a targeted intrusion timeline for a Windows incident using whatever artifacts are available (event logs, EDR, SIEM exports, triage notes).

安装
$ install --globalskills.sh
使用

安装后,您可以通过在终端运行以下命令来使用此技能:

skills use windows-intrusion-timeline-targeted