Ghost In The Logs

Evade sysmon and windows event logging
Alternatives To Ghost In The Logs
Project NameStarsDownloadsRepos Using ThisPackages Using ThisMost Recent CommitTotal ReleasesLatest ReleaseOpen IssuesLicenseLanguage
Sigma7,5423217 days ago35January 13, 201922otherPython
Main Sigma Rule Repository
Sysmon Config4,512
3 months ago78
Sysmon configuration file template with default high-quality event tracing
Sysmontools1,405
7 months ago7
Utilities for Sysmon
Sentinel Attack1,038
8 months ago12mitHCL
Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK
Sysmon Config529
5 years agon,ullBatchfile
Advanced Sysmon configuration, Installer & Auto Updater with high-quality event tracing
Ghost In The Logs297
4 years agomitC
Evade sysmon and windows event logging
Windows_event_logging160
2 years agobsd-3-clausePowerShell
Windows Event Forwarding subscriptions, configuration files and scripts that assist with implementing ACSC's protect publication, Technical Guidance for Windows Event Logging.
Sysmon Config Bypass Finder68
5 years agogpl-3.0Python
Detect possible sysmon logging bypasses given a specific configuration
Swelf24
10 months ago15agpl-3.0C#
Simple Windows Event Log Forwarder (SWELF). Its easy to use/simply works Log Forwarder and EVTX Parser. Almost in full release here at https://github.com/ceramicskate0/SWELF/releases/latest.
Universal Winlogbeat Configuration15
2 years ago1bsd-3-clause
Universal Winlogbeat configuration
Alternatives To Ghost In The Logs
Select To Compare


Alternative Project Comparisons
Popular Sysmon Projects
Popular Logger Projects
Popular Security Categories

Get A Weekly Email With Trending Projects For These Categories
No Spam. Unsubscribe easily at any time.
C
Logger
Ghost
Sysmon