A powershell script that can find beaconing on an endpoint that is running Sysmon and logging DNS (Event ID 22) and Network Connections (Event ID 3)
-
Notifications
You must be signed in to change notification settings - Fork 0
Gusty-Dusty/SysmonBeaconing
Folders and files
Name | Name | Last commit message | Last commit date | |
---|---|---|---|---|
Repository files navigation
About
A powershell script that can find beaconing on an endpoint that is running Sysmon and logging DNS (Event ID 22) and Network Connections (Event ID 3)
Resources
Stars
Watchers
Forks
Releases
No releases published
Packages 0
No packages published