AbGuthrie / goquery
Provide a shell like interface by utilizing osquery's distributed API
☆80Updated 4 years ago
Alternatives and similar repositories for goquery:
Users that are interested in goquery are comparing it to the libraries listed below
- Competition Infrastructure Management☆86Updated 3 years ago
- Collect autorun records from running system☆60Updated 3 years ago
- A CLI tool for querying passive DNS services☆41Updated last year
- ☆33Updated 3 years ago
- Sandbox feature upgrade with the help of wrapped samples☆76Updated 6 years ago
- How to Zeek Sysmon Logs!☆102Updated 3 years ago
- rules to identify files containing juicy information like usernames, passwords etc☆127Updated 7 years ago
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆105Updated 6 years ago
- ☆53Updated 5 years ago
- Recon Hunt Queries☆76Updated 3 years ago
- Things to know when DFIR occurs near a vault deployment.☆43Updated 6 years ago
- A YARA Rule Performance Measurement Tool☆58Updated 11 months ago
- Threat hunting repo for my independent study on threat hunting with OSQuery☆28Updated 7 years ago
- Mitre Att&ck Technique Emulation☆82Updated 5 years ago
- A MITRE Caldera plugin written in Python 3 used to convert Red Canary Atomic Red Team Tests to MITRE Caldera Stockpile YAML ability files…☆71Updated 3 years ago
- Bro integration with osquery☆15Updated last year
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- simple YARA-based IOC scanner☆166Updated last week
- Dovehawk is a Zeek module that automatically imports MISP indicators and reports Sightings☆122Updated 3 years ago
- pollen - A command-line tool for interacting with TheHive☆35Updated 5 years ago
- Extract indicators of compromise from text, including "escaped" ones.☆160Updated 4 years ago
- Osquery Resources☆60Updated 5 years ago
- Golang command line tool for the macOS Endpoint Security Framework☆29Updated 5 years ago
- Security Onion Elastic Stack☆46Updated 4 years ago
- A collection of typical false positive indicators☆55Updated 4 years ago
- Use Markov Chains to obfuscate data as other data☆52Updated 8 years ago
- Automatically create YARA rules from malicious documents.☆208Updated 2 years ago
- Tools for the Computer Incident Response Team☆143Updated 7 years ago
- Website crawler with YARA detection☆88Updated last year
- A Golang API for TheHive☆13Updated 4 years ago