SwiftOnSecurity / sysmon-config

Sysmon configuration file template with default high-quality event tracing
4.73k stars 1.69k forks source link

SANS Commandline browser #139

Open ChrisM65 opened 3 years ago

ChrisM65 commented 3 years ago

Thoughts on adding this to the default?

wget.exe;curl.exe

https://isc.sans.edu/forums/diary/Keep+an+Eye+on+CommandLine+Browsers/25804/