jmpsec / osctrl
Fast and efficient osquery management
☆443Updated 3 weeks ago
Alternatives and similar repositories for osctrl:
Users that are interested in osctrl are comparing it to the libraries listed below
- A repository for using osquery for incident detection and response☆847Updated 2 years ago
- Production-ready detection & response queries for osquery☆566Updated last week
- Transform Linux Audit logs for SIEM usage☆763Updated 2 weeks ago
- Mapping the MITRE ATT&CK Matrix with Osquery☆793Updated last year
- ⚡️ Catalyst is a self-hosted, open source incident response platform and ticket system that helps to automate alert handling and incident…☆391Updated 3 weeks ago
- Manage, monitor and improve your cyber security posture.☆91Updated 2 years ago
- Osquery launcher, autoupdater, and packager☆522Updated this week
- osquery extensions by Trail of Bits☆264Updated 2 years ago
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs an…☆405Updated last week
- Web Based Event Viewer (GUI) for Suricata EVE Events in Elastic Search☆457Updated this week
- Security event correlation engine for ELK stack☆439Updated 10 months ago
- PatrOwl - Open Source, Free and Scalable Security Operations Orchestration Platform☆248Updated this week
- 🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.☆261Updated 2 years ago
- an osquery fleet manager☆618Updated 2 years ago
- Osquery Resources☆60Updated 5 years ago
- Scirius is a web application for Suricata ruleset management and threat hunting.☆650Updated 3 weeks ago
- Real-time, container-based file scanning at enterprise scale☆919Updated 3 weeks ago
- MISP Docker (XME edition)☆282Updated last year
- PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform☆632Updated last month
- Suricata, Snort and Zeek IDS rule and pcap testing system☆477Updated 4 months ago
- A standard for reducing log volume without sacrificing analytical capability☆204Updated 2 months ago
- Cisco Orbital - Osquery queries by Talos☆132Updated 8 months ago
- HASSH is a network fingerprinting standard which can be used to identify specific Client and Server SSH implementations. The fingerprints…☆540Updated last week
- simple YARA-based IOC scanner☆169Updated 2 months ago
- Jimi is an automation first no-code platform designed and developed originally for Security Orchestration and Response. Since its launch …☆164Updated 10 months ago
- Graph platform for Detection and Response☆692Updated 2 years ago
- An open standard for hashing network flows into identifiers, a.k.a "Community IDs".☆178Updated 7 months ago
- Sagan is a multi-threads, high performance log analysis engine. At it's core, Sagan similar to Suricata/Snort but with logs rather th…☆168Updated last month
- Create actionable data from your Vulnerability Scans☆1,379Updated 2 years ago
- DynamiteNSM is a free Network Security Monitor developed by Dynamite Analytics to enable network visibility and advanced cyber threat det…☆171Updated last year