014,121 GitHub stars
02Unified ingestion of logs from Plaso, CSV, and JSONL formats
03Mapping of incident events to the MITRE ATT&CK framework
04Advanced search and filtering using the Timesketch query language
05Collaborative sketching and storytelling for multi-analyst investigations
06Automated data analysis using built-in forensic analyzers and Sigma rules