trailofbits / osqueryLinks
SQL powered operating system instrumentation, monitoring, and analytics.
☆41Updated 7 months ago
Alternatives and similar repositories for osquery
Users that are interested in osquery are comparing it to the libraries listed below
Sorting:
- A scalable search index for binary files☆116Updated 7 years ago
- X86 disassembler benchmark☆66Updated 2 months ago
- ☆28Updated 7 years ago
- MSR Project Freta☆77Updated last year
- This repository contains the companion code from the "All your tracing are belong to BPF" blog posts☆19Updated 2 years ago
- A cross-platform library for verifying Authenticode signatures☆162Updated last month
- ☆54Updated 2 weeks ago
- The TpmTool utility is a simple cross-platform tool for accessing TPM2.0 Non-Volatile (NV) Spaces (Index Values) on compliant systems, wi…☆147Updated 4 years ago
- A port of Kaitai to the Hiew hex editor☆149Updated 5 years ago
- Hashashin: A Fuzzy Matching Tool for Binary Ninja☆94Updated 2 years ago
- bareflank based hypervisor with guest support☆61Updated 5 years ago
- A bare-metal x86 instruction set fuzzer a la Sandsifter☆72Updated last year
- Pretty printer from GTIRB to assembly code☆49Updated 2 months ago
- CITL's static analysis engine for native code artifacts☆20Updated 4 years ago
- Yet another library library (and tools)☆214Updated 2 weeks ago
- ☆53Updated 7 years ago
- A sample PoC for container-aware exec events for osquery☆24Updated last year
- Intel x86 bare metal hypervisor for researching snapshot fuzzing ideas.☆169Updated 5 years ago
- PageBuster - dump all executable pages of packed processes.☆204Updated 4 years ago
- Extracting high level semantic information from binary code☆67Updated 6 years ago
- Parsing of YARA rules into AST and building new rulesets in C++.☆129Updated last month
- clang-based search engine for C/C++ data structures, classes, prototypes & macros☆103Updated 5 months ago
- ☆59Updated 2 years ago
- Experiments involving the Windows Hypervisor Platform☆23Updated 5 years ago
- a friendly wrapper around ptrace☆134Updated 3 years ago
- Underconstrained symbolic execution for cryptography verification☆19Updated 4 years ago
- A pure ANSI-C implementation of calculating a SimHash over 4-byte tuples (including multiplicities) for a given byte stream. Simple and r…☆46Updated 6 years ago
- yara and radare2, better together☆27Updated 3 weeks ago
- A framework to track the evolution of Operating Systems over time☆67Updated 2 years ago
- A step towards automating the creation of Ghidra processor modules☆39Updated 8 months ago