An Inofficial Sysmon Version History (Change Log)
☆33Oct 25, 2020Updated 5 years ago
Alternatives and similar repositories for sysmon-version-history
Users that are interested in sysmon-version-history are comparing it to the libraries listed below
Sorting:
- Sandbox feature upgrade with the help of wrapped samples☆76Jun 23, 2018Updated 7 years ago
- This repository was created to aid in the deployment/maintenance of the Sysmon service on a large number of computers.☆83Mar 20, 2023Updated 2 years ago
- Knowledge base of analytics designed to cover threats based on MITRE's ATT&CK.☆23Dec 13, 2018Updated 7 years ago
- Some YARA rules i will add from time to time☆12May 31, 2019Updated 6 years ago
- A curated lust of awesome cyber civil society actors, project etc.☆10Jul 16, 2020Updated 5 years ago
- A PowerShell Module Dedicated to Reverse Engineering☆15Jan 17, 2020Updated 6 years ago
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Feb 20, 2024Updated 2 years ago
- A collection of typical false positive indicators☆56Dec 5, 2020Updated 5 years ago
- Investigate suspicious activity by visualizing Sysmon's event log☆431Dec 22, 2023Updated 2 years ago
- Placeholder for IRIS-H Digital Forensics Tool☆15May 30, 2018Updated 7 years ago
- To parse ugly Microsoft DNS Logs....☆41Jun 8, 2018Updated 7 years ago
- Carve Windows Prefetch files from arbitrary binary data☆16Jun 11, 2017Updated 8 years ago
- A rogue DNS detector☆24Nov 20, 2025Updated 3 months ago
- ☆23Feb 3, 2021Updated 5 years ago
- Oriana is a threat hunting tool that leverages a subset of Windows events to build relationships, calculate totals and run analytics. The…☆177Jun 10, 2021Updated 4 years ago
- Utility for binary searching a sorted file for lines that start with the search key☆18Jun 9, 2018Updated 7 years ago
- Invisible Watermarks with Space Characters in ASCII Files☆21Jun 14, 2018Updated 7 years ago
- A script to create and assign SOP tasks into the cases☆20Aug 16, 2020Updated 5 years ago
- ☆22Dec 22, 2020Updated 5 years ago
- ☆19Oct 23, 2020Updated 5 years ago
- Your Everyday Threat Intelligence☆22Mar 21, 2017Updated 8 years ago
- Windows Thingies... but in Rust☆23Nov 12, 2022Updated 3 years ago
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Jan 21, 2022Updated 4 years ago
- Python scripts for parsing the index file and individual cache files from the cache2 folder of Firefox defaulted on in version 32☆27Sep 27, 2018Updated 7 years ago
- ☆23Jun 1, 2023Updated 2 years ago
- Yara rules☆22Mar 27, 2023Updated 2 years ago
- Log Entry to Sigma Rule Converter☆107Mar 3, 2022Updated 4 years ago
- A repo for security analytics & threat hunting resources☆21Sep 25, 2018Updated 7 years ago
- A CALDERA plugin for autonomous incident response☆27Oct 6, 2025Updated 4 months ago
- Sources, configuration and how to detect evil things utilizing Microsoft Sysmon.☆937Dec 12, 2023Updated 2 years ago
- ☆11Sep 26, 2021Updated 4 years ago
- USN Journal full path builder☆65Sep 16, 2024Updated last year
- ☆48Jun 6, 2025Updated 8 months ago
- Script for parsing Symantec Endpoint Protection logs, VBNs, and ccSubSDK database.☆64Dec 21, 2022Updated 3 years ago
- ☆27Sep 16, 2018Updated 7 years ago
- Configuration guidance for implementing collection of security relevant Windows Event Log events by using Windows Event Forwarding. #nsac…☆883Nov 17, 2020Updated 5 years ago
- Legal, procedural and policies document templates for operating MISP and information sharing communities☆38Jan 31, 2023Updated 3 years ago
- Command Line STDOUT Colorer☆30Jul 27, 2021Updated 4 years ago
- Alternative YARA scanning engine☆73Aug 23, 2022Updated 3 years ago