jmpsec / osctrlLinks
Fast and efficient osquery management
☆454Updated last month
Alternatives and similar repositories for osctrl
Users that are interested in osctrl are comparing it to the libraries listed below
Sorting:
- A repository for using osquery for incident detection and response☆855Updated 2 years ago
- Transform Linux Audit logs for SIEM usage☆774Updated 2 weeks ago
- Osquery launcher, autoupdater, and packager☆529Updated this week
- Manage, monitor and improve your cyber security posture.☆90Updated 2 years ago
- Web Based Event Viewer (GUI) for Suricata EVE Events in Elastic Search☆461Updated last month
- ⚡️ Catalyst is a self-hosted, open source incident response platform and ticket system that helps to automate alert handling and incident…☆408Updated 2 weeks ago
- Production-ready detection & response queries for osquery☆579Updated 2 weeks ago
- Security event correlation engine for ELK stack☆440Updated last year
- Mapping the MITRE ATT&CK Matrix with Osquery☆797Updated 2 years ago
- PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform☆635Updated 3 weeks ago
- osquery extensions by Trail of Bits☆264Updated 2 years ago
- A standard for reducing log volume without sacrificing analytical capability☆206Updated 4 months ago
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs an…☆416Updated this week
- Osquery Resources☆60Updated 5 years ago
- PatrOwl - Open Source, Free and Scalable Security Operations Orchestration Platform☆248Updated 3 weeks ago
- Real-time, container-based file scanning at enterprise scale☆932Updated 3 weeks ago
- Sagan is a multi-threads, high performance log analysis engine. At it's core, Sagan similar to Suricata/Snort but with logs rather th…☆179Updated 3 months ago
- Open source endpoint agent providing host information to Zeek. [v2]☆83Updated last week
- Scirius is a web application for Suricata ruleset management and threat hunting.☆656Updated 3 weeks ago
- an osquery fleet manager☆617Updated 2 years ago
- Wazuh - Ruleset☆454Updated 9 months ago
- An open standard for hashing network flows into identifiers, a.k.a "Community IDs".☆181Updated 9 months ago
- Jimi is an automation first no-code platform designed and developed originally for Security Orchestration and Response. Since its launch …☆165Updated last year
- Tenzir is the data pipeline engine for security teams.☆687Updated this week
- Graph platform for Detection and Response☆694Updated 2 years ago
- The tool for updating your Suricata rules.☆276Updated last week
- 🚌 Threat Bus – A threat intelligence dissemination layer for open-source security tools.☆263Updated 2 years ago
- A Linux Auditd rule set mapped to MITRE's Attack Framework☆797Updated 5 years ago
- HASSH is a network fingerprinting standard which can be used to identify specific Client and Server SSH implementations. The fingerprints…☆542Updated 2 months ago
- A flexible control server for osquery fleets☆1,104Updated 4 years ago