home/categories/debugging/tsale-awesome-dfir-skills-skills-analysis-windows-intrusion-timeline-skill-md
quick start
Installation and usage
Create a targeted intrusion timeline for a Windows incident using whatever artifacts are available (event logs, EDR, SIEM exports, triage notes).
安裝
$ install --globalskills.sh
使用
安裝後,您可以通過在終端運行以下命令來使用此技能:
skills use windows-intrusion-timeline-targeted