https://osquery.io/
Osquery
osquery
https://www.elastic.co/docs/reference/beats/filebeat/filebeat-module-osquery
Osquery module | Beats
The osquery module collects and decodes the result logs written by osqueryd in the JSON format. To set up osqueryd follow the osquery installation...
osquerymodulebeats
https://www.sans.org/white-papers/39900
Open-Source Endpoint Detection and Response with CIS Benchmarks, Osquery, Elastic Stack, and TheHive
There is a wealth of open-source tools available for information security. A characterization of the...
detection and response
https://www.uptycs.com/blog/osquery-security-solutions-build-or-buy
Osquery security solutions: Build or buy?
Following up on an active Twitter thread from @chrissanders88. Humans are always the limiting reagent in info security and budgets are rarely unrestricted, so...
security solutionsosquerybuildbuy
https://saxby.org/osquery-memory-info-table-macos/
Digging Into The Osquery Memory_Info Table MacOS
Apr 28, 2026 - Learn how the osquery memory_info table macOS works, query RAM stats, and monitor memory pressure on Macs with SQL examples.
info tablediggingosquerymemorymacos
https://www.confluent.io/blog/siem-with-osquery-log-aggregation-and-confluent/
SIEM with Osquery Event Log Aggregation and Confluent Platform
Using Kafka Connect to aggregate osquery logs, you can send event logs to Confluent Platform for seamless SIEM, anomaly detection, and threat protection.
event logsiemosqueryaggregationconfluent
https://kifarunix.com/tag/enroll-hosts-on-osquery-fleet-manager/
enroll hosts on osquery fleet manager - kifarunix.com
fleet managerenrollhostsosquery