sysmon-modular VS sysmon-config

Compare sysmon-modular vs sysmon-config and see what are their differences.

sysmon-modular

A repository of sysmon configuration modules (by olafhartong)

sysmon-config

Sysmon configuration file template with default high-quality event tracing (by SwiftOnSecurity)
Our great sponsors
  • Zigi - Workflow assistant built for devs & their teams
  • InfluxDB - Build time-series-based applications quickly and at scale.
  • Scout APM - Truly a developer’s best friend
  • SonarLint - Clean code begins in your IDE with SonarLint
sysmon-modular sysmon-config
11 25
2,034 3,860
- -
8.9 0.0
9 days ago 22 days ago
PowerShell
MIT License -
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

sysmon-modular

Posts with mentions or reviews of sysmon-modular. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2022-11-09.

sysmon-config

Posts with mentions or reviews of sysmon-config. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2022-10-13.

What are some alternatives?

When comparing sysmon-modular and sysmon-config you can also consider the following projects:

sigma - Generic Signature Format for SIEM Systems

atomic-red-team - Small and highly portable detection tests based on MITRE's ATT&CK.

ThreatHunting - Tools for hunting for threats.

SysmonTools - Utilities for Sysmon

ansible-role-elasticsearch - Ansible Role - Elasticsearch

DetectionLabELK - DetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.

Windows-Toolkit - PS one-liner cmdlets for Windows security

vscode-sysmon - Visual Studio Code Microsoft Sysinternal Sysmon configuration file extension.

SysmonForLinux

Event-Forwarding-Guidance - Configuration guidance for implementing collection of security relevant Windows Event Log events by using Windows Event Forwarding. #nsacyber

Power-Response - Powering Up Incident Response with Power-Response