Microsoft is adding Sysmon into Windows.
Originally introduced in 2014, Sysmon, a robust utility designed for in-depth security analysis and event logging within Windows, is slated for direct integration into Windows 11.

Admin
Microsoft is adding Sysmon into Windows.
Nov 19, 2025
Microsoft is Adding Sysmon into Windows
Originally introduced in 2014, Sysmon, a robust utility designed for in-depth security analysis and event logging within Windows, is slated for direct integration into Windows 11. This powerful tool, conceived by Microsoft technical fellow Mark Russinovich with the collaboration of Thomas Garnier, is expected to become a native component of the operating system by early 2026. Its inclusion aims to significantly enhance capabilities for security teams, streamlining the process of identifying and responding to potential threats.