murchisd / splunk_pstree_app

Custom Splunk search command to reconstruct a pstree from Sysmon process creation events (EventCode 1)
22 stars 4 forks source link

Updated README's to be consistent; removed Splunk SDK prerequisite #12

Closed murchisd closed 1 year ago