trustedsec / trustedsec/SysmonCommunityGuide

Changelog Updates

Open
#27 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
Python
Stars
1.4k
Forks
186
PR merge metrics
No merged PRs in 30d

Description

I gathered some details on updates for the changelog, but as I wasn't able to gather feature details for each individual release, I'm not creating a pull request. Here are additions I have been able to quickly gather:

Version Schema Features Release
Sysmon 13.30 4.50 * Adds user fields for events
* Fixes a series of crash-causing bugs
* Improves memory usage and management in the driver.
October 26, 2021
Sysmon 13.24 4.50 ?? Possibly August 18, 2021?
Sysmon 13.23 4.50 ?? Possibly July 27, 2021?
Sysmon 13.22 4.50 ?? Possibly June 23, 2021?
Sysmon 13.21 4.50 ?? Possibly June 1, 2021?
13.20 4.50 * Adds not begin with and not end with filter conditions
* Fixes a regression for rule include/exclude logic
May 25, 2021
13.10 4.50 * Adds a FileDeleteDetected rule that logs when files are deleted but doesn't archive
* Deletes clipboard archive if event is excluded
* Fixes an ImageLoad event bug.
Wednesday, March 24, 2021
13.02 4.50 ?? Wednesday, March 24, 2021

Compiled mostly from: Choco version history and Sysinternals documentation

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Update chapters/sysmon-changelog.md using the release details in the issue. Start by checking the linked Chocolatey version history and Sysinternals documentation, then verify the unknown features and dates for the listed releases. Done means the changelog table contains accurate entries without unresolved ?? values.

Written by the indexing model from the issue text.

Assessment

Domain
documentation
Issue type
Documentation
Difficulty
2/5
Estimated time
1-3 hours
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.