Import and export custom Sysmon configurations using an interactive GUI that lets you build event rules, manage filters, and generate clean XML configs without manually editing Sysmon files.
-
Updated
Mar 10, 2026 - Python
Import and export custom Sysmon configurations using an interactive GUI that lets you build event rules, manage filters, and generate clean XML configs without manually editing Sysmon files.
Hands-on Windows endpoint investigation project using Sysmon to practice SOC Tier-1 triage, correlation, and escalation-ready incident analysis.
Add a description, image, and links to the sysmon-windows topic page so that developers can more easily learn about it.
To associate your repository with the sysmon-windows topic, visit your repo's landing page and select "manage topics."