sysmon-logs
Here are 5 public repositories matching this topic...
Language:All
This script enhances endpoint logging telemetry for the purpose of advanced malware threat detection or for building detections or malware analysis. This can be used in production, however you might want to tune the GPO edits as needed.
- Updated
Feb 10, 2025 - PowerShell
The Granted Access Converter is a utility designed to help users understand and interpret the GrantedAccess values found in Sysmon Event ID 10 logs.
- Updated
Mar 31, 2023 - HTML
Sysmon XML Configuration for Advanced Threat Detection.
- Updated
Feb 22, 2025
Sysmon logs in the window environment are received from a computer in another environment through winlogbeat through Logstash, and then repositioned in Elasticsearch and displayed in PyQt.
- Updated
Sep 2, 2021 - Python
- Updated
Nov 15, 2023
Improve this page
Add a description, image, and links to thesysmon-logs topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with thesysmon-logs topic, visit your repo's landing page and select "manage topics."