Collecting and parsing almost everything, running #Sigma, #YARA, and #Osquery, and displaying results in an interactive UI with MITRE ATT&CK mapping is finally possible!🔥 (More to come) #DFIR #ThreatHunting

Cyb3rMonk's tweet image. Collecting and parsing almost everything, running #Sigma, #YARA, and #Osquery, and displaying results in an interactive UI with MITRE ATT&CK mapping is finally possible!🔥 
(More to come)
#DFIR #ThreatHunting

We're kicking off with @thezachw of @fleetctl in 30 minutes. Join the Prelude Discord and tune in: discord.gg/JsUPunqq #infosec #osquery


Osquery: The Basics on @RealTryHackMe showcased my SQL knowledge in action! Crafting queries to analyze processes and system information came naturally. My SQL background made endpoint investigations smoother. Skills transferred perfectly! #Osquery #SQL #EndpointSecurity

707_Roi's tweet image. Osquery: The Basics on @RealTryHackMe showcased my SQL knowledge in action! Crafting queries to analyze processes and system information came naturally. My SQL background made endpoint investigations smoother. Skills transferred perfectly! #Osquery #SQL #EndpointSecurity

Can’t believe I got to hangout with @alessandrogario in real life, after ages of working together on @osquery and more! @Smjert you were missed! #osquery

sharvil's tweet image. Can’t believe I got to hangout with @alessandrogario in real life, after ages of working together on @osquery and more! @Smjert you were missed! #osquery

Here's my blog on #Qakbot malware with threat detections using #osquery Qakbot seen in below campaigns: ⛔️OneNote Campaign ⛔️WSF Campaign ⛔️HTML Smuggling Campaign Blog: research.loginsoft.com/threat-researc… #threatintelligence #malware #threathunting #DFIR


Check out my latest blog post on Aurora Infostealer that's been spreading through SEO poisoning campaigns and also being distributed via Youtube videos. Here I shared a few tips on how to detect using #sigma & #osquery   research.loginsoft.com/threat-researc…   #ThreatIntelligence #Malware


🔥🔒 Watch out! Threat actors are utilising the papercut CVE-2023-27350 like wildfire! Don't panic, though. Stay safe and get clued up on this vulnerability using #osquery detection. Check out the blog below for all the details! research.loginsoft.com/threat-researc…


We've been monitoring the evolution of #IcedID malware and have uncovered some fascinating findings. Additionally, we've shared some robust #osquery queries to aid in identifying the #Malware. Check out our blog for more details! research.loginsoft.com/threat-researc…


Thx facebook. next time I will report a simple xss and will be rewarded with 500 bugs. But okay, PriveEsc with DLL hijacking on osquery seems to be not so vogue. 😂 @facebook #bugbounty #osquery

MarcelBilal's tweet image. Thx facebook. next time I will report a simple xss and will be rewarded with 500 bugs. But okay, PriveEsc with DLL hijacking on osquery seems to be not so vogue. 😂 @facebook #bugbounty #osquery

"¿Necesitas rastrear actividades sospechosas en tu sistema? osquery te permite consultar tu sistema operativo como si fuera una base de datos. 🖥️ osquery.io #ThreatHunting #osquery

iara0z's tweet image. "¿Necesitas rastrear actividades sospechosas en tu sistema? osquery te permite consultar tu sistema operativo como si fuera una base de datos. 🖥️ 

osquery.io

#ThreatHunting #osquery

🐧🐧 New room IronShade from @RealTryHackMe : Perform a compromise assessment on a Linux host and identify the attack footprints. 🐧🐧 tryhackme.com/r/room/ironsha… #tryhackme #IronShade #Osquery #linux #DFIR #linuxforensic

DjalilAyed's tweet image. 🐧🐧 New room IronShade from @RealTryHackMe : Perform a compromise assessment on a Linux host and identify the attack footprints. 🐧🐧

tryhackme.com/r/room/ironsha…

#tryhackme #IronShade #Osquery #linux #DFIR #linuxforensic

On top of running #YARA, #Sigma, #Osquery and mapping them to MITRE ATT&CK, we run our custom rules on #DFIR artifacts with a newly developed SIEM-like engine on endpoints. The SIEM-like engine is just amazing! binalyze.com/blog/dfir-lab/…


My diagnostic agent just taught me about YARA and my mind is blown! 🤯 Stay tuned for the next update of the agent on my next article! #vertexai #osquery osquery.readthedocs.io/en/stable/depl…


💥Dynamo: Analyze literally everything(Event records, Forensic artifacts, Memory, etc.) on an endpoint using #YARA, Sigma, #Osquery, and SQL! Generate findings and run correlations on top of them! binalyze.com/blog/dfir-lab/… This was my masterpiece together with amazingly…


Just completed the 'OSQuery' room on @RealTryHackMe ! Definitely a valuable skill for cybersecurity enthusiasts! Check it out here: tryhackme.com/r/room/osquery… #TryHackMe #OSQuery #CyberSecurity #ThreatHunting #EndpointSecurity #InfoSec #RedTeam #BlueTeam #Learning

b1n4ryl0v3r's tweet image. Just completed the 'OSQuery' room on 
@RealTryHackMe ! 
Definitely a valuable skill for cybersecurity enthusiasts!

Check it out here: tryhackme.com/r/room/osquery… #TryHackMe #OSQuery #CyberSecurity #ThreatHunting #EndpointSecurity #InfoSec #RedTeam #BlueTeam #Learning

I have been playing around with ATC in #osquery and have now ingested Application usage data from #munki into #snowflake. This is a pretty neat way to gain usage data for cost savings initiatives t-lark.github.io/posts/app-usag…


#10: github.com/osquery/osquery An OS instrumentation framework. Lets you query your infrastructure like a database, offering valuable insights into your systems. #osquery


How to Install #Osquery on #Ubuntu #VPS This article provides a guide describing how to install Osquery on Ubuntu VPS. What is Osquery? Osquery is a lightweight, SQL-powered agent that lets you query your Linux system like a ... Keep reading 👉 blog.radwebhosting.com/how-to-install…


Osquery: The Basics on @RealTryHackMe showcased my SQL knowledge in action! Crafting queries to analyze processes and system information came naturally. My SQL background made endpoint investigations smoother. Skills transferred perfectly! #Osquery #SQL #EndpointSecurity

707_Roi's tweet image. Osquery: The Basics on @RealTryHackMe showcased my SQL knowledge in action! Crafting queries to analyze processes and system information came naturally. My SQL background made endpoint investigations smoother. Skills transferred perfectly! #Osquery #SQL #EndpointSecurity

How to Install #Osquery on #Ubuntu #VPS This article provides a guide describing how to install Osquery on Ubuntu VPS. What is Osquery? Osquery is a lightweight, SQL-powered agent that lets you query your Linux system like a ... Keep reading 👉 blog.radwebhosting.com/how-to-install…


How to Install #Osquery on #Ubuntu #VPS This article provides a guide describing how to install Osquery on Ubuntu VPS. What is Osquery? Osquery is a lightweight, SQL-powered agent that lets you query your Linux system like a ... Keep reading 👉 blog.radwebhosting.com/how-to-install…


Scaling #osquery shouldn’t mean endless complexity. Uptycs Nexus delivers a fully managed service that simplifies deployment and strengthens #EndpointSecurity with centralized visibility. See how: hubs.ly/Q03KZ97t0


How to Install #Osquery on #Ubuntu #VPS This article provides a guide describing how to install Osquery on Ubuntu VPS. What is Osquery? Osquery is a lightweight, SQL-powered agent that lets you query your Linux system like a ... Keep reading 👉 blog.radwebhosting.com/how-to-install…


How to Install #Osquery on #Ubuntu #VPS This article provides a guide describing how to install Osquery on Ubuntu VPS. What is Osquery? Osquery is a lightweight, SQL-powered agent that lets you query your Linux system like a ... Keep reading 👉 blog.radwebhosting.com/how-to-install…


How to Install #Osquery on #Ubuntu #VPS This article provides a guide describing how to install Osquery on Ubuntu VPS. What is Osquery? Osquery is a lightweight, SQL-powered agent that lets you query your Linux system like a ... Keep reading 👉 blog.radwebhosting.com/how-to-install…


I suggest linux telemetry #Osquery is the best and use this for elk or splunk or anything else, #osquery costume rule integrated with any siem or EDR solution, ebpf and syscall supported


Say hello to Uptycs Nexus—fully managed osquery fleet management at just $3/endpoint/month. Easy deployment, zero infra pain, and powerful telemetry from day one. 🚀 hubs.ly/Q03twPSR0 #osquery #EndpointSecurity #Uptycs


My diagnostic agent just taught me about YARA and my mind is blown! 🤯 Stay tuned for the next update of the agent on my next article! #vertexai #osquery osquery.readthedocs.io/en/stable/depl…


Thx facebook. next time I will report a simple xss and will be rewarded with 500 bugs. But okay, PriveEsc with DLL hijacking on osquery seems to be not so vogue. 😂 @facebook #bugbounty #osquery

MarcelBilal's tweet image. Thx facebook. next time I will report a simple xss and will be rewarded with 500 bugs. But okay, PriveEsc with DLL hijacking on osquery seems to be not so vogue. 😂 @facebook #bugbounty #osquery

#Wazuh 3.5.0 has been released. Great for intrusion detection, compliance, and incident response. Completely free open source. Includes modules for integration with #Elasticsearch, #Osquery, #OpenScap, #AWS, #Virustotal and more. Learn more at documentation.wazuh.com


If you're looking to do some #ThreatHunting on Linux or Mac environments, here is a nice starting guide jordanpotti.com/2018/02/16/elk… #OSQuery

x0rz's tweet image. If you're looking to do some #ThreatHunting on Linux or Mac environments, here is a nice starting guide jordanpotti.com/2018/02/16/elk… #OSQuery

Collecting and parsing almost everything, running #Sigma, #YARA, and #Osquery, and displaying results in an interactive UI with MITRE ATT&CK mapping is finally possible!🔥 (More to come) #DFIR #ThreatHunting

Cyb3rMonk's tweet image. Collecting and parsing almost everything, running #Sigma, #YARA, and #Osquery, and displaying results in an interactive UI with MITRE ATT&CK mapping is finally possible!🔥 
(More to come)
#DFIR #ThreatHunting

DetectionLabELK - A Fork From DetectionLab With ELK Stack Instead Of Splunk j.mp/3lmdDtZ #DetectionLabELK #Dfir #osquery

KitPloit's tweet image. DetectionLabELK - A Fork From DetectionLab With ELK Stack Instead Of Splunk j.mp/3lmdDtZ #DetectionLabELK #Dfir #osquery

#Wazuh 3.5.0 has been released. Great for intrusion detection, compliance, and incident response. Completely free open source. Includes modules for integration with #Elasticsearch, #Osquery, #OpenScap, #AWS, #Virustotal and more.

D3pak's tweet image. #Wazuh 3.5.0 has been released. Great for intrusion detection, compliance, and incident response. Completely free open source. Includes modules for integration with #Elasticsearch, #Osquery, #OpenScap, #AWS, #Virustotal and more.

#osquery looks like a good tool for monitoring systems and implementing #IDS #locomocosec

oleggryb's tweet image. #osquery looks like a good tool for monitoring systems and implementing #IDS
#locomocosec

#osquery Credit goes to @SecurityTube for awesome labs. now all of my work machines runs @osquery for management. just added our #d3vServer. management server: @kolide

AniR0y's tweet image. #osquery Credit goes to @SecurityTube  for awesome labs. now all of my work machines runs @osquery for management. 

just added our #d3vServer. 
management server: @kolide

Very excited for a great #osquery first day conference @osqueryatscale

spookerlabs's tweet image. Very excited for a great #osquery first day conference @osqueryatscale

Great #osquery workshop at Blue team Village with @TheZachW . Thanks @BlueTeamVillage for The coin =)

spookerlabs's tweet image. Great #osquery workshop at Blue team Village with @TheZachW . Thanks @BlueTeamVillage for The coin =)

When you know your day is going to involve a lot of #osquery you put on your @kolide socks for good luck.

Jckwhet's tweet image. When you know your day is going to involve a lot of #osquery you put on your @kolide socks for good luck.

#OSQuery and @Kolideco (fleet) are now part of the #OpenStack-Ansible-OPS tooling and integrates with our existing @elastic-stack. "Query your devices like a database"™

cloudnull's tweet image. #OSQuery and @Kolideco (fleet) are now part of the #OpenStack-Ansible-OPS tooling and integrates with our existing @elastic-stack.

"Query your devices like a database"™
cloudnull's tweet image. #OSQuery and @Kolideco (fleet) are now part of the #OpenStack-Ansible-OPS tooling and integrates with our existing @elastic-stack.

"Query your devices like a database"™
cloudnull's tweet image. #OSQuery and @Kolideco (fleet) are now part of the #OpenStack-Ansible-OPS tooling and integrates with our existing @elastic-stack.

"Query your devices like a database"™

Stop by to get your passport stamped, chat #opensource, and grab a shirt! #BSidesSF #osquery

uptycs's tweet image. Stop by to get your passport stamped, chat #opensource, and grab a shirt! #BSidesSF #osquery

Loading...

Something went wrong.


Something went wrong.


United States Trends