<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
    <title>sysmon</title>
    <link rel="self" type="application/atom+xml" href="https://links.biapy.com/guest/tags/1193/feed"/>
    <updated>2026-04-25T08:59:29+00:00</updated>
    <id>https://links.biapy.com/guest/tags/1193/feed</id>
            <entry>
            <id>https://links.biapy.com/links/1516</id>
            <title type="text"><![CDATA[Sysmon for Linux]]></title>
            <link rel="alternate" href="https://github.com/microsoft/SysmonForLinux" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/1516"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[Sysmon for Linux is a tool that monitors and logs system activity including process lifetime, network connections, file system writes, and more. Sysmon works across reboots and uses advanced filtering to help identify malicious activity as well as how intruders and malware operate on your network. Sysmon for Linux is part of Sysinternals.]]>
            </summary>
            <updated>2025-08-28T20:09:22+00:00</updated>
        </entry>
            <entry>
            <id>https://links.biapy.com/links/4321</id>
            <title type="text"><![CDATA[Zircolite]]></title>
            <link rel="alternate" href="https://github.com/wagga40/Zircolite" />
            <link rel="via" type="application/atom+xml" href="https://links.biapy.com/links/4321"/>
            <author>
                <name><![CDATA[Biapy]]></name>
            </author>
            <summary type="text">
                <![CDATA[A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs.

- [Comment effectuer une investigation numérique sur les journaux d’évènements Windows avec Zircolite ? @ IT-Connect :fr:](https://www.it-connect.fr/zircolite-investigation-numerique-journaux-securite-windows/).]]>
            </summary>
            <updated>2025-08-29T03:58:19+00:00</updated>
        </entry>
    </feed>
