sysmon-config
System monitoring configuration
A template configuration file for Microsoft Sysinternals' Sysmon to monitor system changes with high-quality event tracing.
Sysmon configuration file template with default high-quality event tracing
5k stars
357 watching
2k forks
last commit: over 1 year ago
Linked from 4 awesome lists
loggingmonitoringnetsecsysinternalssysmonthreat-huntingthreatintelwindows
Related projects:
| Repository | Description | Stars |
|---|---|---|
| | A comprehensive Sysmon configuration file template with default high-quality event tracing | 457 |
| | A configuration package for advanced system monitoring using Sysmon, designed to detect and alert on various threat activities and provide forensic visibility. | 780 |
| | A community-driven guide to configuring and using the Sysmon security monitoring tool | 1,156 |
| | Utilities for analyzing and visualizing Windows event logs from Sysmon, helping users track and monitor system activity. | 1,492 |
| | A repository of customizable Sysmon configuration modules for security analysis and threat hunting. | 2,678 |
| | A curated collection of resources and tools for learning and implementing Microsoft Sysmon for incident detection, threat hunting, and endpoint security monitoring. | 901 |
| | A remotely-accessible system performance monitoring and task management tool for servers and Raspberry Pi setups | 191 |
| | A system monitor that provides real-time usage data of Linux systems via a web browser or mobile clients. | 117 |
| | Analyzes Sysmon event logs to detect suspicious activity and visualize process and network correlations. | 419 |
| | A utility to simulate Windows event logs for testing EDR detections and correlation rules | 836 |
| | A PowerShell-based EDR system with Sysmon integration to detect and respond to security threats. | 218 |
| | A drop-in replacement for Sysmon that enhances its security features and data collection capabilities. | 212 |
| | Automates the setup of a secure Microsoft environment for a new company | 597 |
| | Provides automated security guidance and configuration settings for macOS systems. | 1,823 |