forensics_list_important_events
Identify critical Event IDs for Security, System, PowerShell, or Sysmon channels to streamline Windows forensic investigations.
Instructions
List important Event IDs for a log channel.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| channel | Yes |