sysmon topic
sysmon
Sysmon and wazuh integration with Sigma sysmon rules [updated]
DetectionLab
Automate the creation of a lab environment complete with security tooling and logging best practices
sigma
Main Sigma Rule Repository
ThreatHunter-Playbook
A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient.
WindowsSpyBlocker
Block spying and tracking on Windows
sentinel-attack
Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK
sysmon-config
Sysmon configuration file template with default high-quality event tracing
sysmon-modular
A repository of sysmon configuration modules
SysmonTools
Utilities for Sysmon