OTRF / OSSEM

Open Source Security Events Metadata (OSSEM)
MIT License
1.24k stars 215 forks source link

Upated sysmon parser script to fix issue reported on Sentinel Github #99

Closed ashwin-patil closed 3 years ago

ashwin-patil commented 3 years ago

Hi @Cyb3rWard0g

Referencing issues raised PR by @lostInSpaceSomewhere from Azure Sentinel Github. since we are generating parser from automated script, it makes sense to update original template to get those changes in the script.

PR : https://github.com/Azure/Azure-Sentinel/pull/1754

Summary of changes required in original template:

ashwin-patil commented 3 years ago

Need to further evaluate below 2 points :

Cyb3rWard0g commented 3 years ago

Fixed already with latest PR in February