Parse Windows event logs into fast timelines and detection-rich outputs so agents can triage suspicious host activity, search for known patterns, and hand investigators reviewable artifacts.
Scanned 6/8/2026
Install via CLI
openskills install agentskillexchange/skills---
name: "Turn Windows event logs into Sigma-backed threat-hunting timelines with Hayabusa"
slug: "turn-windows-event-logs-into-sigma-backed-threat-hunting-timelines-with-hayabusa"
description: "Parse Windows event logs into fast timelines and detection-rich outputs so agents can triage suspicious host activity, search for known patterns, and hand investigators reviewable artifacts."
github_stars: 3116
verification: "listed"
source: "https://github.com/Yamato-Security/hayabusa"
author: "Yamato Security"
publisher_type: "organization"
category: "Security & Verification"
framework: "Multi-Framework"
tool_ecosystem:
github_repo: "Yamato-Security/hayabusa"
github_stars: 3116
---
# Turn Windows event logs into Sigma-backed threat-hunting timelines with Hayabusa
Parse Windows event logs into fast timelines and detection-rich outputs so agents can triage suspicious host activity, search for known patterns, and hand investigators reviewable artifacts.
## Prerequisites
Hayabusa plus Windows event logs from a live system, offline collection, or enterprise collection pipeline.
## Installation
No source-backed install or usage instructions could be extracted automatically. Review the upstream project before running this skill in a sensitive workflow.
- Source: https://github.com/Yamato-Security/hayabusa
## Documentation
- https://github.com/Yamato-Security/hayabusa
## Source
- [Agent Skill Exchange](https://agentskillexchange.com/skills/turn-windows-event-logs-into-sigma-backed-threat-hunting-timelines-with-hayabusa/)
No comments yet. Be the first to comment!