OSQUERY Installation - Let's Deploy a Host Intrusion Detection System

  Рет қаралды 6,958

Taylor Walton

Taylor Walton

Күн бұрын

Join me as we install OSQUERY. Turn your OS into a database! Let's deploy a Host Intrusion Detection System and SIEM with free open source tools. Join me as we explore and learn together.
Github Repo: github.com/Ope...
Defend with us on Slack: bit.ly/2Pi1byt
Check us out: www.opensecure...
Interact with our demo: www.opensecure...
Hire us: www.opensecure...

Пікірлер: 5
@rahulshah1559
@rahulshah1559 3 жыл бұрын
loved it! i have a question tho; is there anyway so that we can kill the process whose binary isn't in the disk using osquery itself? can we do that? or we need an extra hand for incident response (via wazuh's active response lets say)?
@taylorwalton_socfortress
@taylorwalton_socfortress 3 жыл бұрын
Hey Rahul, yes the best way to kill the process would be to write a bash script to kill the process ID that was observed with the osquery alert and then use active response to call that script when that osquery alert is triggered. Unfortunately I have not tried that myself but in theory it should be possible. That's the power of OpenSource! Thanks for watching!
@binodbj4743
@binodbj4743 2 жыл бұрын
Awsome
@elatedmaniac
@elatedmaniac 3 жыл бұрын
FYI: For exiting the CLI in a cleaner fashion, use .exit otherwise, the video is great.
@taylorwalton_socfortress
@taylorwalton_socfortress 3 жыл бұрын
Noted and thanks for watching!
The evil clown plays a prank on the angel
00:39
超人夫妇
Рет қаралды 53 МЛН
Сестра обхитрила!
00:17
Victoria Portfolio
Рет қаралды 958 М.
osquery Basics: macOS administration
19:22
Uptycs: Secure Your Hybrid Cloud
Рет қаралды 1,9 М.
TryHackMe! Finding Computer Artifacts with osquery
20:04
John Hammond
Рет қаралды 33 М.
Basics of Osquery For CyberSecurity | TryHackMe Osquery: The Basics
27:31
Motasem Hamdan | Cyber Security & Tech
Рет қаралды 8 М.
osquery Basics: osquery & SQL
13:15
Uptycs: Secure Your Hybrid Cloud
Рет қаралды 11 М.
Automate Your InfoSec Tasks with Wazuh's API!
29:14
Taylor Walton
Рет қаралды 8 М.
The evil clown plays a prank on the angel
00:39
超人夫妇
Рет қаралды 53 МЛН