Recent Blog ArticlesNewest TopicsMost LikesTagged:TagSysmon v11.11 Learn about the latest changes to Sysmon (v11.11) Sysmon v11.10, Sigcheck v2.80, Autoruns v13.98 Learn about the latest changes to Sysmon (v11.10), Sigcheck (v2.80) and Autoruns (v13.98) Sysmon v11.0, LiveKD v5.63, Process Explorer v16.32, Coreinfo v3.5 Learn about the latest changes to Sysmon (v11.0), LiveKD (v5.63), Process Explorer (v16.32) and Coreinfo (v3.5) Process Monitor v3.53, Process Explorer v16.31 Learn about the latest changes to Process Monitor (v3.53) and Process Explorer (v16.31) Sysmon v10.42, Zoomit v4.52, Whois v1.21 Learn about the latest changes to Sysmon (v10.42) , Zoomit (v4.52) and Whois (v1.21) BGINFO 4.28 This update to Bginfo includes a fix that prevents bypass of Windows Secure Mode script policy. Sysmon 10.4 Rule Enhancements Do you think Sysmon rule filtering is too inflexibile? Were you excited about RuleGroups but wished they went further? If so you may be interested in some changes that we made in Sysmon 10.4 Sysmon - The rules about rules Did your filter rules stop working after you upgraded your version of Sysmon? Did you lose your process create events after you enabled DNS Logging? Or perhaps you are new to Sysmon rules or would l...