Toolsmith Tidbit: Will Ballenthin’s Python-evtx
Andrew Case (@attrc) called out Will Ballenthin’s (@williballenthin) Python-evtx on Twitter, reminding me that I’m long overdue in mentioning it here as well.
Will’s Python-evtx description from his website for same follows:
“python-evtx is a pure Py…