-
Notifications
You must be signed in to change notification settings - Fork 1.8k
Open
Description
This update to Sysmon, an advanced host security monitoring tool, sets the service to run as a protected process, hardening it against tampering, adds a new event, FileExecutableDetected, for when new executable images are saved to files, and fixes a system hang occurring in certain situations due to an interaction between network and file system events.
There are now 29 events. Will this config be updated?
Metadata
Metadata
Assignees
Labels
No labels