This app is archived. Learn more
SYSMON Integration Framework Basic is a set of searches and dashboards for visualization of multiple security checks on Sysmon’s events of Windows hosts. It allows to detect anomalies (further analysis is needed to check if they are caused by malware, user's data leakage intentions, etc.).
(3)
Categories
Created By
Type
Downloads
Licensing
Splunk Answers
Resources