
Palantir osquery Configuration
#Operations Management#Security Operations
Request Tracker for Incident Response (RTIR) is a tool for incident response teams to manage incident reports, correlate data, and facilitate communication.
This repository provides a baseline template for osquery deployment
This repository offers a baseline template designed for organizations that are implementing osquery in a production environment. It includes query packs that are customized for specific scenarios, such as detecting unwanted Chrome extensions and addressing Windows attacks. The repository emphasizes the importance of carefully considering datasets and use cases to ensure optimal operation of osquery.