Skip to content

1.2.0

Compare
Choose a tag to compare
@wagga40 wagga40 released this 18 Apr 19:05
· 206 commits to master since this release

This release introduce :

  • Ability to forward detected events to HTTP server. Useful when running zircolite on multiple endpoints
  • Nuitka-generated executables. It is supposed to be faster than the PyInstaller-generated one
  • Fully embedded versions (rules, evtx_dump, templates, config files...) for Windows

Since, for now, Zircolite has been mostly made to scan EVTX files, only Microsoft Windows packaged binaries will be distributed. For convenience, you can place these binaries at the root of the Zircolite directory.

⚠️ Some AV may not like the packaged binaries.