Environment
- CB Defense PSC Console: All Versions
- CB ThreatHunter Console: All Versions
Question
Can the PSC be used to query or view sysmon events?
Answer
No. The PSC does not yet have the ability to query against the Windows event log
Additional Notes
System Monitor (Sysmon) is a Windows system service and device driver that, once installed on a system, remains resident across system reboots to monitor and log system activity to the Windows event log