Palantir osquery Configuration

Palantir osquery Configuration

#Operations Management#Security Operations

Request Tracker for Incident Response (RTIR) is a tool for incident response teams to manage incident reports, correlate data, and facilitate communication.

Visit Website

This repository provides a baseline template for osquery deployment

This repository offers a baseline template designed for organizations that are implementing osquery in a production environment. It includes query packs that are customized for specific scenarios, such as detecting unwanted Chrome extensions and addressing Windows attacks. The repository emphasizes the importance of carefully considering datasets and use cases to ensure optimal operation of osquery.