osquery-nodenode.js client for osquery
Stars: ✭ 32 (+45.45%)
sqhunterA simple threat hunting tool based on osquery, Salt Open and Cymon API
Stars: ✭ 64 (+190.91%)
kolide-quickstart[DEPRECATED] A quickstart demo for Kolide tools
Stars: ✭ 52 (+136.36%)
DetectionlabAutomate the creation of a lab environment complete with security tooling and logging best practices
Stars: ✭ 3,237 (+14613.64%)
Osquery GoGo bindings for osquery
Stars: ✭ 249 (+1031.82%)
FleetThe premier osquery fleet manager.
Stars: ✭ 210 (+854.55%)
Kube Query[EXPERIMENTAL] Extend osquery to report on Kubernetes
Stars: ✭ 190 (+763.64%)
OsctrlFast and efficient osquery management
Stars: ✭ 183 (+731.82%)
Osq Ext BinExtension to osquery windows that enhances it with real-time telemetry, log monitoring and other endpoint data collection
Stars: ✭ 142 (+545.45%)
Xxh🚀 Bring your favorite shell wherever you go through the ssh.
Stars: ✭ 2,559 (+11531.82%)
SiacSIAC is an enterprise SIEM built on open-source technology.
Stars: ✭ 100 (+354.55%)
ExposqGo app that dispatches osquery to multi-machines
Stars: ✭ 89 (+304.55%)
GoqueryProvide a shell like interface by utilizing osquery's distributed API
Stars: ✭ 74 (+236.36%)
Osql ExperimentalA community-oriented fork of osquery with support for cmake, public CI testing, and regular releases
Stars: ✭ 62 (+181.82%)
FleetA flexible control server for osquery fleets
Stars: ✭ 1,068 (+4754.55%)
Osquery CookbookA Chef Cookbook to install and configure osquery.
Stars: ✭ 11 (-50%)
Osquery ConfigurationA repository for using osquery for incident detection and response
Stars: ✭ 618 (+2709.09%)
ZentralZentral is an open-source solution for infrastructure monitoring and endpoint event stream processing. It provides build-in orchestration of macOS security components (Santa, Osquery, et-al.), event correlation and event management. It consolidates its features with various data store backends (ElasticStack, Azure Log Analytics, Splunk, et-al.).
Stars: ✭ 522 (+2272.73%)
LauncherOsquery launcher, autoupdater, and packager
Stars: ✭ 346 (+1472.73%)
HubbleHubble is a modular, open-source security compliance framework. The project provides on-demand profile-based auditing, real-time security event notifications, alerting, and reporting. HubbleStack is a free and open source project made possible by Adobe. https://github.com/adobe
Stars: ✭ 313 (+1322.73%)
DetectionlabelkDetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.
Stars: ✭ 273 (+1140.91%)
rhqRecon Hunt Queries
Stars: ✭ 66 (+200%)