trustedsec / trustedsec/SysmonCommunityGuide
Changelog Updates
Nobody has claimed this yet.
- Dominant language
- Python
- Stars
- 1.4k
- Forks
- 186
- PR merge metrics
- No merged PRs in 30d
Description
I gathered some details on updates for the changelog, but as I wasn't able to gather feature details for each individual release, I'm not creating a pull request. Here are additions I have been able to quickly gather:
| Version | Schema | Features | Release |
|---|---|---|---|
| Sysmon 13.30 | 4.50 | * Adds user fields for events * Fixes a series of crash-causing bugs * Improves memory usage and management in the driver. |
October 26, 2021 |
| Sysmon 13.24 | 4.50 | ?? | Possibly August 18, 2021? |
| Sysmon 13.23 | 4.50 | ?? | Possibly July 27, 2021? |
| Sysmon 13.22 | 4.50 | ?? | Possibly June 23, 2021? |
| Sysmon 13.21 | 4.50 | ?? | Possibly June 1, 2021? |
| 13.20 | 4.50 | * Adds not begin with and not end with filter conditions* Fixes a regression for rule include/exclude logic |
May 25, 2021 |
| 13.10 | 4.50 | * Adds a FileDeleteDetected rule that logs when files are deleted but doesn't archive * Deletes clipboard archive if event is excluded * Fixes an ImageLoad event bug. |
Wednesday, March 24, 2021 |
| 13.02 | 4.50 | ?? | Wednesday, March 24, 2021 |
Compiled mostly from: Choco version history and Sysinternals documentation
Contributor guide
No contributing guide indexed for this repository
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Update chapters/sysmon-changelog.md using the release details in the issue. Start by checking the linked Chocolatey version history and Sysinternals documentation, then verify the unknown features and dates for the listed releases. Done means the changelog table contains accurate entries without unresolved ?? values.
Written by the indexing model from the issue text.
Assessment
- Domain
- documentation
- Issue type
- Documentation
- Difficulty
- 2/5
- Estimated time
- 1-3 hours
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 35/100