Simple Docker-based quickstart for osquery, Fleet, and ELK stack
☆64Sep 5, 2023Updated 2 years ago
Alternatives and similar repositories for fleet-osquery-in-a-box
Users that are interested in fleet-osquery-in-a-box are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- JXA script for Mythic that prints the TCC.db☆15Apr 18, 2021Updated 5 years ago
- event shipper for Carbon Black Defense notifications☆10Feb 25, 2023Updated 3 years ago
- Discover which process execute a hunted binary inside macOS☆29Dec 15, 2021Updated 4 years ago
- Provides an easy way to collect and send Slack access & integration logs.☆13Oct 19, 2021Updated 4 years ago
- A JXA script for enumerating running processes, printed out in a json, parent-child tree.☆14Jan 28, 2022Updated 4 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Deploy Kolide's Fleet into AWS using Terraform.☆16Apr 18, 2018Updated 8 years ago
- ☆15Aug 20, 2019Updated 6 years ago
- POC for a basic C2 server using the python aiohttp framework☆15Mar 22, 2020Updated 6 years ago
- Swift code to parse the quarantine history database, Chrome history database, Safari history database, and Firefox history database on ma…☆16Dec 3, 2020Updated 5 years ago
- Mystique may be used to discover infection markers that can be used to vaccinate endpoints against malware. It receives as input a malici…☆82Sep 26, 2017Updated 8 years ago
- Provide a shell like interface by utilizing osquery's distributed API☆83Jun 24, 2020Updated 5 years ago
- Dockerfiles for containerized osquery☆14May 23, 2017Updated 8 years ago
- checks site content against known good ssdeep hash, identifies matches☆10Jun 2, 2019Updated 6 years ago
- Use "Full Disk Access" permissions to read the contents of TCC.db and display it in human-readable format☆40Jul 27, 2021Updated 4 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- ☆29Feb 16, 2021Updated 5 years ago
- A variation CredBandit that uses compression to reduce the size of the data that must be trasnmitted.☆19Jun 24, 2021Updated 4 years ago
- Assorted, MIT licensed, threat hunting rules from @bradleyjkemp☆14Mar 11, 2022Updated 4 years ago
- Red Team tool for exfiltrating the target organization's Google People Directory that you have access to, via Google's API.☆58Sep 2, 2021Updated 4 years ago
- Various scripts for macOS tasks☆143Nov 24, 2025Updated 5 months ago
- Python 3 library to build YARA rules.☆13Oct 24, 2021Updated 4 years ago
- Password spraying on sites that require 2+ page loads and dynamic nonces☆32Jun 23, 2019Updated 6 years ago
- ☆15Apr 20, 2020Updated 6 years ago
- Catalog Red Team techniques that cause popups in various macOS versions☆15Nov 18, 2024Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Objective-C runtime library wrapper for Nim☆19Jun 7, 2017Updated 8 years ago
- Boilerplate for smart contract development which includes all needed basic tools and linting☆17Oct 4, 2018Updated 7 years ago
- Scripts from my book OS X Incident Response Scripting and Analysis -> https://www.amazon.com/dp/012804456X/ref=cm_sw_r_tw_dp_U_x_fQeLAb68…☆50Sep 23, 2016Updated 9 years ago
- A collection of projects demonstrating various commandline cloaking techniques on Linux☆61Aug 4, 2022Updated 3 years ago
- A CLI tool for leveraging IDP signing keys to impersonate users and groups☆19Apr 1, 2021Updated 5 years ago
- Security Monitoring Resolution Categories☆138Nov 25, 2021Updated 4 years ago
- Apfell POC Chrome Extension Payload☆10Jun 24, 2020Updated 5 years ago
- A flexible control server for osquery fleets☆1,099Dec 15, 2020Updated 5 years ago
- ☆28Oct 15, 2025Updated 7 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Deploy MISP Project software with Vagrant.☆45Jun 15, 2020Updated 5 years ago
- ☆24Jan 2, 2026Updated 4 months ago
- A repository for using osquery for incident detection and response☆894Sep 8, 2025Updated 8 months ago
- Swift-based fuzzing tools☆21May 22, 2023Updated 3 years ago
- The boilerplate for a new Journal site☆19Oct 15, 2019Updated 6 years ago
- A list of IOCs applicable to PoshC2☆24Aug 3, 2020Updated 5 years ago
- A systemd-enabled Kali Linux Docker image, in the spirit of geerlingguy/docker-debian11-ansible.☆15Apr 28, 2026Updated 3 weeks ago