Tool
Sysmon
- First Reported
- Jun 29, 2026
- Latest Reported
- Sep 24, 2026
Reported Context (2)
- We use Sysmon and custom Wazuh rules to detect privilege escalation-related activities. Wazuh Demonstrates Detection of Common Windows Privilege Escalation Techniques
- This hijacked execution flow was corroborated by Sysmon event logs, which captured the anomalous process creation and image loading. Bing SEO Poisoning Led to BumbleBee, AdaptixC2 and Akira Ransomware Intrusions
Malware (2)
People (7)
MITRE ATT&CK (41)
Vendors (6)
Products (9)
Tools (13)
Countries (1)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.