network connection

Winsage
November 19, 2025
Microsoft will integrate native System Monitor (Sysmon) functionality into Windows 11 and Windows Server 2025, enhancing security operations for IT teams. This integration will provide instant threat visibility, automate compliance through Windows Update, and include features such as process monitoring, network connection tracking, credential access detection, file system monitoring, process tampering detection, WMI persistence tracking, and custom configuration support. It will also offer official customer service support and allow seamless access to events through Windows Event Logs or Security Information and Event Management (SIEM) systems. Administrators can enable Sysmon using the command "sysmon -i." Future plans include expanding Sysmon’s capabilities with enterprise-scale management and AI-powered detection.
Winsage
November 19, 2025
Microsoft will integrate its forensic tool, System Monitor (Sysmon), into the Windows kernel with the upcoming releases of Windows 11 and Server 2025. This integration will transform Sysmon from a standalone utility into a native “Optional Feature” that will be serviced automatically through Windows Update. Administrators will no longer need to manually distribute Sysmon; instead, it can be activated through the “Turn Windows features on or off” dialog or command-line instructions. The integration will ensure that updates flow through the standard Windows Update pipeline, providing official support and Service Level Agreements (SLAs) for Sysmon. Microsoft plans to utilize local computing capabilities for AI inferencing to enhance security measures, focusing on detecting credential theft and lateral movement patterns. Sysmon will maintain backward compatibility with existing workflows, allowing the use of custom configuration files and adhering to the XML schema while continuing to log events to the Windows event log. Community-driven configuration repositories will remain operational, preserving established community knowledge.
Winsage
November 18, 2025
Microsoft is integrating Sysmon into Windows 11 and Windows Server 2025, eliminating the need for separate deployments of Sysinternals tools. This integration will allow users to utilize custom configuration files for filtering captured events, which will be logged in the Windows event log. Sysmon is a free tool that monitors and blocks suspicious activities while logging events such as process creation, DNS queries, and executable file creation. It will be easily installable via the "Optional features" settings in Windows 11, with updates delivered through Windows Update. Sysmon will retain its standard features, including support for custom configuration files and advanced event filtering. Key events logged by Sysmon include process creation, network connections, process access, file creation, process tampering, and WMI events. Comprehensive documentation and new enterprise management features will be released next year.
Winsage
November 18, 2025
Microsoft will integrate Sysmon into Windows 11 and Windows Server 2025, eliminating the need for standalone deployment. Sysmon will allow users to utilize custom configuration files for event filtering, logging events in the Windows event log. It tracks events such as process creation, DNS queries, executable file creation, changes to the clipboard, and auto-backup of deleted files. Users can access Sysmon through "Optional features" in Windows 11 and receive updates via Windows Update. Key events logged by Sysmon include process creation, network connections, process access, file creation, process tampering, and WMI events. Comprehensive documentation and new enterprise management features will be released next year.
AppWizard
October 29, 2025
In the latest Snapshot release, a new undead passive mob called the camel husk has been introduced, which spawns in desert areas and is often accompanied by hostile riders. The camel husk is unaffected by sunlight and typically appears with a husk wielding a spear and a parched skeleton. It is passive when unmounted but becomes hostile if ridden by a hostile mob. The Snapshot also features a new variant of skeleton called the parched, which appears in low-light conditions and is resistant to sunlight. The spear's lunge enchantment has been adjusted to reduce hunger consumption, and mounts such as horses, mules, donkeys, and camels can now float in water while ridden. New advancements have been added to incorporate the camel husk and parched, along with a new graphical option called "Anisotropic Filtering" to enhance visual quality. Parrots can now mimic sounds from various mobs, and environmental fog in the Nether is consistently applied. Ridden mounts will no longer sink in water, and chunks fade in smoothly. The Data Pack and Resource Pack versions have been updated, and several game rules have been renamed and organized into a registry. New limits for game rules have been established, and modifiers for ARGB color values have been introduced. Numerous bugs have also been fixed in this release.
Winsage
August 13, 2025
Microsoft has launched Windows 365 Reserve, a service that allows organizations to transition users to temporary virtual machines (VMs) in the cloud during device failures. This service provides employees with access to a secure Cloud PC for up to 10 days, minimizing downtime. The cloud-hosted VMs can be managed through Microsoft Intune, but accessing them requires a secondary device with a web browser or the Windows App. Scaling may be a challenge, as multiple simultaneous users could face resource limitations due to Azure capacity constraints. Applications for the gated beta are open to Microsoft customers, MVPs, or partners with specific licensing requirements, and successful applicants will receive complimentary access for up to 12 weeks.
Search