Security News > 2021 > October > Microsoft releases Linux version of the Windows Sysmon tool

Microsoft releases Linux version of the Windows Sysmon tool
2021-10-14 17:44

Microsoft has released a Linux version of the very popular Sysmon system monitoring utility for Windows, allowing Linux administrators to monitor devices for malicious activity.

Today, Microsoft's Mark Russinovich and a cofounder of the Sysinternals utility suite, announced that Microsoft had released Sysmon for Linux as an open-source project on GitHub.

Unlike Sysmon for Windows, Linux users will be required to compile the program themselves and ensure that they have all the required dependencies, with instructions provided on the project's GitHub page.

Sysmon -i CONFIG FILE. To create your own Sysmon configuration file, you would need to use.

Once started, Sysmon will begin logging events to the /var/log/syslog file.

Sysmon is a powerful tool widely used in Windows environments as part of an organization's security toolbox.


News URL

https://www.bleepingcomputer.com/news/microsoft/microsoft-releases-linux-version-of-the-windows-sysmon-tool/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Microsoft 681 810 4511 4178 3707 13206
Linux 18 380 1428 1130 696 3634