GitHub topics: sysmon-config
G0urmetD/SysmonGuard
SysmonGuard is a modular and production-ready PowerShell tool designed for enterprise environments. It automates the installation, configuration, and uninstallation of Sysmon on Windows clients using best practices.
Language: PowerShell - Size: 23.4 KB - Last synced at: about 23 hours ago - Pushed at: 1 day ago - Stars: 0 - Forks: 0

Akkarykkj/SysmonConfigurationBuilder
A web application dedicated to write sysmon configuration file
Language: JavaScript - Size: 7.73 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 0 - Forks: 0

bananagobananza/SysmonConfigurationBuilder
A web application dedicated to write sysmon configuration file
Language: JavaScript - Size: 12.3 MB - Last synced at: 13 days ago - Pushed at: 13 days ago - Stars: 10 - Forks: 0

bobby-tablez/Enable-All-The-Logs
This script enhances endpoint logging telemetry for the purpose of advanced malware threat detection or for building detections or malware analysis. This can be used in production, however you might want to tune the GPO edits as needed.
Language: PowerShell - Size: 585 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 28 - Forks: 6

thejanit0r/sysmon-bin2xml
Utility to convert SysInternals' Sysmon binary configuration to XML
Language: Python - Size: 4.47 MB - Last synced at: 2 months ago - Pushed at: over 1 year ago - Stars: 3 - Forks: 0

netevert/sentinel-attack
Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK
Language: HCL - Size: 43.1 MB - Last synced at: 7 months ago - Pushed at: over 1 year ago - Stars: 1,056 - Forks: 207

ceramicskate0/sysmon-config Fork of SwiftOnSecurity/sysmon-config
CeramicSkate0 Sysmon configuration fork file template with default high-quality event tracing
Size: 625 KB - Last synced at: 21 days ago - Pushed at: over 1 year ago - Stars: 10 - Forks: 0

0xAnalyst/Sysmon
Sysmon config for both Windows and Linux Devices. Windows one is a bit dated
Language: Batchfile - Size: 105 KB - Last synced at: 10 months ago - Pushed at: 10 months ago - Stars: 54 - Forks: 14

DearBytes/Opensource-Endpoint-Monitoring
This repository contains all the config files and scripts used for our Open Source Endpoint monitoring project.
Language: Python - Size: 1.18 MB - Last synced at: over 1 year ago - Pushed at: almost 6 years ago - Stars: 32 - Forks: 7

sametsazak/sysmon
Sysmon and wazuh integration with Sigma sysmon rules [updated]
Size: 28.3 KB - Last synced at: over 1 year ago - Pushed at: almost 4 years ago - Stars: 55 - Forks: 16

KnightChaser/WindowsSystemMonitor
Sysmon policies practice as XML
Language: XML - Size: 15.6 KB - Last synced at: about 2 months ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

vastlimits/uberAgent-ESA-Sysmon-Converter
Converts Sysmon rules to uberAgent ESA Threat Detection rules
Language: C# - Size: 309 KB - Last synced at: 9 months ago - Pushed at: 9 months ago - Stars: 4 - Forks: 1

totemtechnologies/Sysmon-Tools
Size: 149 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

sduff/sysmon-config Fork of SwiftOnSecurity/sysmon-config
Ransomware focused Sysmon configuration file template with default high-quality event tracing
Size: 365 KB - Last synced at: almost 2 years ago - Pushed at: about 4 years ago - Stars: 1 - Forks: 0

1Dimitri/WixsharpSysmon
Wixsharp based installed MSI for Sysmon and rules from the SwiftOnSecurity project
Language: C# - Size: 10.7 KB - Last synced at: about 2 years ago - Pushed at: almost 4 years ago - Stars: 0 - Forks: 0
