All Apps and Add-ons

Potential bug in TIME_FORMAT for Splunk Add-on for Sysmon v1.0.1

chris_barrett
Path Finder

I believe that the TIME_FORMAT value for this add-on is incorrect - more specifically, I believe that the trailing percentage sign (%) at the end needs to be removed.

Is someone who is more familiar with XML formatted Sysmon events able to confirm this?

 

 

Labels (1)
0 Karma
Did you miss .conf21 Virtual?

Good news! The event's keynotes and many of its breakout sessions are now available online, and still totally FREE!