Welcome to the new Splunkbase! To return to the old Splunkbase, click here.
Warning

This app is archived. Learn more

SYSMON Integration Framework app icon

SYSMON Integration Framework

SYSMON Integration Framework Basic is a set of searches and dashboards for visualization of multiple security checks on Sysmon’s events of Windows hosts. It allows to detect anomalies (further analysis is needed to check if they are caused by malware, user's data leakage intentions, etc.).

Built by SOC Prime
splunk product badge

Latest Version 1.0.1
October 4, 2017
Compatibility
Not Available
Rating

5

(3)

Log in to rate this app
Support
SYSMON Integration Framework support icon
Not Supported
Learn more
SYSMON Integration Framework Basic is a set of searches and dashboards for visualization of multiple security checks on Sysmon’s events of Windows hosts. It allows to detect anomalies (further analysis is needed to check if they are caused by malware, user's data leakage intentions, etc.).

Categories

Created By

SOC Prime

Type

app

Downloads

549

Resources

Login to report this app listing