OktaSecurityLabs / sgtLinks
Osquery Mangement Server
☆114Updated 5 years ago
Alternatives and similar repositories for sgt
Users that are interested in sgt are comparing it to the libraries listed below
Sorting:
- A Terraform module for GRR: the distributed incident forensics and response framework☆51Updated 5 years ago
- [DEPRECATED] A quickstart demo for Kolide tools☆52Updated 7 years ago
- Things to know when DFIR occurs near a vault deployment.☆44Updated 7 years ago
- Simple Docker-based quickstart for osquery, Fleet, and ELK stack☆63Updated 2 years ago
- osquery extensions by Trail of Bits☆267Updated 2 years ago
- Python module for evaluation of AWS account best practices around incident handling readieness.☆55Updated 5 years ago
- AWS Metadata Proxy for protection against SSRF☆68Updated 5 years ago
- Automated testing, generation & manipulation of #osquery packs☆73Updated last year
- Remote Memory Acquisition Tool☆251Updated 5 years ago
- ☆83Updated 6 years ago
- Core incident handling plugins for aws_ir cli, incident pony, and more.☆21Updated 7 years ago
- Bro/Zeek integration with osquery☆94Updated 5 years ago
- A python module for orchestrating content acquisitions and analysis via amazon ssm.☆58Updated 2 years ago
- Provide a shell like interface by utilizing osquery's distributed API☆81Updated 5 years ago
- A starter-kit for a source-controlled, CLI-based osquery management workflow.☆30Updated 7 years ago
- A Lambda-powered Security Orchestration framework for AWS GuardDuty☆53Updated 5 years ago
- Terraform stack to deploy ELK Threat Hunting on Amazon AWS.☆89Updated 6 years ago
- A Slack bot to add security info to messages containing URLs, hashes and IPs☆71Updated last year
- WebUI of MineMeld☆43Updated 2 years ago
- Materials for the BSides NoVA/Charleston 2018 Bro Workshop☆14Updated 6 months ago
- Google Cloud Platform Security Tool☆235Updated 6 years ago
- Framework for reviewing and responding to events in AWS Flow Logs using Lambda Function☆46Updated 4 months ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆54Updated last week
- Start enforcing G Suite third-party apps via OAuth☆58Updated last month
- Dockerfiles for NSM tools☆84Updated 8 years ago
- Vendor Security Model Contract☆98Updated 3 years ago
- Engine of MineMeld☆141Updated 2 years ago
- Varna: Quick & Cheap AWS CloudTrail Monitoring with Event Query Language (EQL)☆52Updated 2 years ago
- 1-Click push forensics evidence to the cloud☆141Updated 2 months ago
- Tenable.io SDK offers a scalable and safe way to integrate with the Tenable.io platform.☆83Updated 5 years ago