top of page
Search
sirerewcumyc

Using Sysinternals Sysmon in Azure Sentinel: A Cloud-Native Solution for Security Information and Ev



Today, we celebrate 25 years of Sysinternals, a set of utilities to analyze, troubleshoot and optimize Windows systems and applications. Also, as part of this special anniversary, we are releasing Sysmon for Linux, an open-source system monitor tool developed to collect security events from Linux environments using eBPF (Extended Berkeley Packet Filter) and sending them to Syslog for easy consumption. Sysmon for Linux is built on a library also released today named sysinternalsEBPF which is built on libbpf including a library of eBPF inline functions used as helpers.




Using Sysinternals Sysmon in Azure Sentinel


2ff7e9595c


1 view0 comments

Recent Posts

See All

Comments


bottom of page