fmanco / osquery-packs
osquery query packs
☆14Updated 6 years ago
Alternatives and similar repositories for osquery-packs:
Users that are interested in osquery-packs are comparing it to the libraries listed below
- Osquery Packs we use for customer security hardening☆12Updated 4 months ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆53Updated 2 months ago
- defendA Data Lake. A firehose pipeline to athena providing enrichment and normalization for security events☆16Updated last year
- ☆18Updated 3 years ago
- Cisco Orbital - Osquery queries by Talos☆130Updated 5 months ago
- Automated testing, generation & manipulation of #osquery packs☆72Updated 4 months ago
- Active Response plugin. Osquery to execute wazuh/ossec active response plugins. You can write your own plugins, easy to plug☆9Updated 4 years ago
- Mapping Corelight or Zeek data to Elastic Common Schema fields☆34Updated 2 weeks ago
- Build Automated Machine Images for MISP☆28Updated last year
- Repository containing Jupyter Notebooks for working with OSQuery tables and data☆17Updated 4 years ago
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- Legal, procedural and policies document templates for operating MISP and information sharing communities☆37Updated 2 years ago
- Core incident handling plugins for aws_ir cli, incident pony, and more.☆21Updated 6 years ago
- Osquery Mangement Server☆114Updated 4 years ago
- Documentation used for Shuffle☆19Updated this week
- Osquery Resources☆60Updated 5 years ago
- CyCAT.org API back-end server including crawlers☆30Updated 2 years ago
- Actionable analytics designed to combat threats based on MITRE's ATT&CK.☆22Updated 5 years ago
- Recon Hunt Queries☆76Updated 3 years ago
- AWS EKS Cluster Forensics☆23Updated 3 years ago
- Pre-configured environment that supports the development and running of OpenDXL solutions☆13Updated 3 years ago
- Kestrel Jupyter Notebook Kernel☆9Updated last year
- Threat hunting repo for my independent study on threat hunting with OSQuery☆28Updated 7 years ago
- A starter-kit for a source-controlled, CLI-based osquery management workflow.☆30Updated 6 years ago
- Bro script package to create JSON formatted logs to stream into data analysis systems.☆28Updated last year
- Notes for High Availability MISP in AWS☆19Updated 5 years ago
- Simple Docker-based quickstart for osquery, Fleet, and ELK stack☆62Updated last year
- ☆34Updated 3 years ago
- Decision trees generated via Graphviz to inform pragmatic threat modelling.☆11Updated 4 years ago
- Learn about a network from a pcap file or reading from an interface☆28Updated 10 months ago