Closed Rivosyke closed 1 year ago
Added OriginalFileName (Sysmon EID 1) mapping for Splunk CIM compliance. Also added OriginalFileName to the process creation datamodel test.
For some reason the tests still fail, it appears some regression to me but not clear yet, have to investigate further.
Added OriginalFileName (Sysmon EID 1) mapping for Splunk CIM compliance. Also added OriginalFileName to the process creation datamodel test.