sysmon
Main Sigma Rule Repository
Tools for the Generic Signature Format for SIEM Systems
Extract logs based off events from sysmon. Comes as a package, cli and ui.
Captures Sysmon events and converts the output into a pandas DataFrames / CSV