Found 20 repositories(showing 20)
olafhartong
A repository of sysmon configuration modules
olafhartong
A repository of Sysmon For Linux configuration modules
frangelbarrera
"A modular framework for advanced EDR evasion on Windows x64, featuring dynamic syscalls, AES encryption, and process hollowing. 85% evasion rate against Sysmon."
cyb3rpeace
No description available
shreyasugemuge
Modular zsh configuration with expressive prompt, iTerm2 dev workspace (devterm), system monitoring (sysmon), and auto-dependency management. macOS-first, Linux-compatible.
wahidhendrawan
YARA→Sigma converter V1 & V2 : modular engine with web UI & CLI; pipelines for Sysmon/WinSec; outputs queries for Elastic, Splunk, Sentinel, QRadar & more.
kietamin
No description available
justrodrigooliveira
A repository of sysmon configuration modules
Gusty-Dusty
No description available
whoami-chmod777
No description available
proedgesol2025
No description available
wz0r
No description available
WidespreadPandemic
sysmon modular testing
namelessdefender
No description available
nethil35
Differents sysmon config, inspirede by sysmon modular projet
HarrisInfoTech
Sysmon v15.15 on Windows Server 2022 using Olaf Hartong’s sysmon-modular config; validated Event IDs 1/3/11 and prepped for SIEM
jackdmoody
A modular, end-to-end analytics pipeline for behavioral detection, drift analysis, and triage using Windows Sysmon telemetry.
jackdmoody
A modular, end-to-end analytics pipeline for behavioral detection, drift analysis, and triage using Windows Sysmon telemetry.
G0urmetD
SysmonGuard is a modular and production-ready PowerShell tool designed for enterprise environments. It automates the installation, configuration, and uninstallation of Sysmon on Windows clients using best practices.
nomad97
This is a research project aimed at improving the detection and attribution capabilities of the the prior ADAPT models. It uses Atomic Red Tea (ART) for threat emulation and sysmon-modular for detection. The primary detection parameter is the MITRE ATT&CK Technique ID.
All 20 repositories loaded