sysmon topic

List sysmon repositories

DuckSysEye

63
Stars
10
Forks
Watchers

SysEye是一个window上的基于att&ck现代EDR设计思想的威胁响应工具.有效检测常见的未知威胁与已知威胁.防守方的利剑

SysmonResources

95
Stars
23
Forks
Watchers

Consolidation of various resources related to Microsoft Sysmon & sample data/log

ossec-sysmon

79
Stars
24
Forks
Watchers

A Ruleset to enhance detection capabilities of Ossec using Sysmon

sysmon-edr

211
Stars
28
Forks
Watchers

Sysmon EDR POC Build within Powershell to prove ability.

SWELF

24
Stars
7
Forks
Watchers

Simple Windows Event Log Forwarder (SWELF). Its easy to use/simply works Log Forwarder and EVTX Parser. Almost in full release here at https://github.com/ceramicskate0/SWELF/releases/latest.

system-monitor

17
Stars
5
Forks
Watchers

Qt based replacement for gnome system monitor

MuteSysmon

15
Stars
5
Forks
Watchers

A PowerShell script to prevent Sysmon from writing its events

Universal-Winlogbeat-configuration

28
Stars
4
Forks
Watchers

Universal Winlogbeat configuration

TA-Sysmon-deploy

31
Stars
13
Forks
Watchers

Deploy and maintain Symon through the Splunk Deployment Sever