<@UE75QHFRU> Yes, the rest of the log is formatted...
# windows
s
@packetzero Yes, the rest of the log is formatted right, but under the
data
column, I see something like this:
:{"data":"{\"EventData\":{\"AuthenticationPackageName\":\"Kerberos\",\"ImpersonationLevel\":
p
that looks right. Hard to look at, but you should be able to parse that string with JSON parser.
if you have ruby installed, run 'irb' to test: