Noah H
Noah H
Thanks for bring this to our attention. We are working on a bunch of Sysmon config changes in the near future so we will work something in to fix this!
We will be pointed this repo to https://github.com/olafhartong/sysmon-modular in some upcoming releases as the group over their is able to dedicate more time to maintaining the config than we are...
The more I look at this the less I think its caused by the .zip file but rather the directory the file is extracted in. Still an issue though.
I dont see the code you pushed. I would recommend forking the repo and then changing the code there then make a pull request back to the project.
resolved in https://github.com/blackhillsinfosec/EventLogging/commit/46986e7d96b45f8b32bd227eb466cd8cfd8b24a2