Hunter’s Tool Chest: Sysmon
The first entry in this series was about a network-focused hunting tool, so it seems fair that the second entry is about an endpoint-focused one. Sysmon is a free tool created by Microsoft that is capable of collecting process level metadata— including command line activity…







