A flexible control server for osquery fleets
☆1,099Dec 15, 2020Updated 5 years ago
Alternatives and similar repositories for fleet
Users that are interested in fleet are comparing it to the libraries listed below
Sorting:
- Osquery launcher, autoupdater, and packager☆537Updated this week
- an osquery fleet manager☆620Dec 8, 2022Updated 3 years ago
- A repository for using osquery for incident detection and response☆881Sep 8, 2025Updated 5 months ago
- Zentral is a high-visibility platform for controlling Apple endpoints in enterprises. It brings great observability to IT and makes track…☆844Updated this week
- Mapping the MITRE ATT&CK Matrix with Osquery☆806May 11, 2023Updated 2 years ago
- osquery extensions by Trail of Bits☆269Apr 12, 2023Updated 2 years ago
- Osquery Mangement Server☆115Aug 7, 2020Updated 5 years ago
- Go bindings for osquery☆424Feb 10, 2026Updated 2 weeks ago
- Fast and efficient osquery management☆488Updated this week
- SQL powered operating system instrumentation, monitoring, and analytics.☆23,116Updated this week
- StreamAlert is a serverless, realtime data analysis framework which empowers you to ingest, analyze, and alert on data from any environme…☆2,887Oct 23, 2023Updated 2 years ago
- ☆15Aug 20, 2019Updated 6 years ago
- go-audit is an alternative to the auditd daemon that ships with many distros☆1,656Dec 22, 2025Updated 2 months ago
- GRR Rapid Response: remote live forensics for incident response☆5,040Feb 16, 2026Updated last week
- A repository for using windows event forwarding for incident detection and response☆1,296Sep 8, 2025Updated 5 months ago
- Recon Hunt Queries☆79May 16, 2021Updated 4 years ago
- [DEPRECATED] A quickstart demo for Kolide tools☆52May 29, 2018Updated 7 years ago
- BinaryAlert: Serverless, Real-time & Retroactive Malware Detection.☆1,443Dec 12, 2023Updated 2 years ago
- Open device management☆6,077Updated this week
- A multi-platform binary whitelisting solution☆451Sep 29, 2021Updated 4 years ago
- Your Everyday Threat Intelligence☆1,951Feb 12, 2026Updated 2 weeks ago
- TheHive is a Collaborative Case Management Platform, now distributed as a commercial version☆3,890Jul 25, 2025Updated 7 months ago
- A repository of sysmon configuration modules☆2,980Aug 21, 2024Updated last year
- osquery input plugin☆10Oct 23, 2018Updated 7 years ago
- Deploy Kolide's Fleet into AWS using Terraform.☆15Apr 18, 2018Updated 7 years ago
- Collaborative forensic timeline analysis☆3,271Updated this week
- Main Sigma Rule Repository☆10,145Feb 19, 2026Updated last week
- Re-play Security Events☆1,723Mar 20, 2024Updated last year
- The Hunting ELK☆3,913Jun 1, 2024Updated last year
- Open Source Security Events Metadata (OSSEM)☆1,288Feb 27, 2023Updated 3 years ago
- Python bindings for osquery's Thrift API☆302Jul 24, 2024Updated last year
- Vulnerability Static Analysis for Containers☆10,932Updated this week
- Cloud Native Runtime Security☆8,690Updated this week
- Configuration guidance for implementing collection of security relevant Windows Event Log events by using Windows Event Forwarding. #nsac…☆883Nov 17, 2020Updated 5 years ago
- An information security preparedness tool to do adversarial simulation.☆1,139Apr 1, 2019Updated 6 years ago
- Automate the creation of a lab environment complete with security tooling and logging best practices☆4,906Jul 6, 2024Updated last year
- Sysmon configuration file template with default high-quality event tracing☆5,401Jul 3, 2024Updated last year
- Digging Deeper....☆3,771Feb 21, 2026Updated last week
- Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.☆1,339Dec 13, 2022Updated 3 years ago