Trail of Bits

Endpoint telemetry

osquery-extensions

Collection of Trail of Bits extensions that expand what osquery can inspect and expose.

View on GitHub trailofbits/osquery-extensions

Best for

Teams already invested in osquery who want deeper endpoint coverage.

Surface

Endpoint telemetry

Catalog group

Inspect operating systems and endpoint surfaces

Repository

trailofbits/osquery-extensions

From the README

This repository includes osquery extensions developed and maintained by Trail of Bits. If you would like to sponsor the development of an extension, please contact us. Extensions are a type of osquery add-on that can be loaded at runtime to provide new virtual tables. The extensions interface allows organizations to implement proprietary detection methods, or address their individual needs.
Read the full README on GitHub ↗

Related tools · Inspect operating systems and endpoint surfaces