A tool PoC that demonstrate how to leverage Osquery interactive shell named pipe implementation to enumerate windows machines.
-  Updated 
Jun 29, 2023  - Go
 
A tool PoC that demonstrate how to leverage Osquery interactive shell named pipe implementation to enumerate windows machines.
Linux and Windows laptop geolocation tables for osquery
An osquery extension built with osquery-python with a few tables that were converted from Go.
osquery_hunter is a lightweight, Python-based triage helper for Windows systems. It uses osquery to enumerate running processes, network sockets, and signatures — helping analysts quickly spot unsigned or suspicious binaries. Ideal for DFIR, incident response, and blue-team investigations in environments without full EDR coverage.
Add a description, image, and links to the osquery-extension topic page so that developers can more easily learn about it.
To associate your repository with the osquery-extension topic, visit your repo's landing page and select "manage topics."