Migrating from OSQuery to Velociraptor :: Velociraptor - Digging deeper!
Tags
attack-pattern: | Data Server - T1583.004 Server - T1584.004 Tool - T1588.002 |
Common Information
Type | Value |
---|---|
UUID | e20aae59-3898-4d55-82a1-eef30a1fc618 |
Fingerprint | 3bbbb9f3ed3c0802 |
Analysis status | DONE |
Considered CTI value | 0 |
Text language | |
Published | Feb. 3, 2021, midnight |
Added to db | Aug. 31, 2024, 2:06 a.m. |
Last updated | Oct. 16, 2024, 1:45 a.m. |
Headline | Migrating from OSQuery to Velociraptor |
Title | Migrating from OSQuery to Velociraptor :: Velociraptor - Digging deeper! |
Detected Hints/Tags/Attributes | 17/1/11 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 104 | ✔ | Velociraptor Blog | https://docs.velociraptor.app/blog/index.xml | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 1 | blog.kolide.com |
|
Details | Domain | 5 | artifact.windows |
|
Details | Domain | 1 | windows.applications.chrome |
|
Details | Domain | 35 | www.velocidex.com |
|
Details | File | 12 | c:\windows\notepad.exe |
|
Details | File | 3 | c:\\windows\\notepad.exe |
|
Details | File | 1 | c:\windows\system32\%.dll |
|
Details | File | 15 | windows.sys |
|
Details | Url | 1 | https://blog.kolide.com/the-file-table-in-osquery-is-amazing-99db0f52a066 |
|
Details | Url | 5 | https://www.velocidex.com/training |
|
Details | Url | 7 | https://www.velocidex.com/discord. |