Endpoint Visibility Using OSquery + Kolide Fleet - Part 1

preview_player
Показать описание
osquery is an operating system instrumentation framework for Windows, OS X (macOS), Linux, and FreeBSD.

This allows you to write SQL queries to explore operating system data. With osquery, SQL tables represent abstract concepts such as running processes, loaded kernel modules, open network connections, browser plugins, hardware events or file hashes.
Рекомендации по теме