Boosted by soatok@furry.engineer ("Soatok Dreamseeker"):
SwiftOnSecurity@infosec.exchange wrote:
It was named sysmon-config because what else would it be called? It was basically the only one. It was not a claim.
I really wish I had someone to tell the story to. About how I had forensic computer breach discussions with General Counsel as a Helpdesk employee. Thanks to Sysmon.
And my XML file.