TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Introducing osquery for Windows

118 pointsby megahzover 8 years ago

7 comments

jaytaylorover 8 years ago
I&#x27;m feeling confused.. like I&#x27;ve seen this in the past [0] [1] [2] but had no idea the project was affiliated with Facebook. Oh wait, I was thinking of envdb [3].. and meanwhile envdb is renamed to Kolide [4] and is targeting &quot;osquery command and control&quot;.<p><pre><code> Infinite loop detected. Program aborted. </code></pre> [0] <a href="https:&#x2F;&#x2F;github.com&#x2F;osquery&#x2F;osquery-python" rel="nofollow">https:&#x2F;&#x2F;github.com&#x2F;osquery&#x2F;osquery-python</a><p>[1] <a href="https:&#x2F;&#x2F;encrypted.google.com&#x2F;search?q=site%3Anews.ycombinator.com+osquery" rel="nofollow">https:&#x2F;&#x2F;encrypted.google.com&#x2F;search?q=site%3Anews.ycombinato...</a><p>[2] <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=8528460" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=8528460</a><p>[3] <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=9324717" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=9324717</a><p>[4] <a href="https:&#x2F;&#x2F;github.com&#x2F;kolide&#x2F;kolide" rel="nofollow">https:&#x2F;&#x2F;github.com&#x2F;kolide&#x2F;kolide</a>
评论 #12602271 未加载
评论 #12602014 未加载
footaover 8 years ago
Can the link be changed from m.facebook.com to facebook.com?
评论 #12601641 未加载
评论 #12612000 未加载
TheAnimusover 8 years ago
This is quite nice to see, when I first heard about osquery, I thought &quot;cool WMI (well WQL) for Linux&quot;
评论 #12601784 未加载
revelationover 8 years ago
So they have reinvented Windows Management Instrumentation (WMI)? I think it even uses similar pseudo-SQL queries.<p>Thank you, I&#x27;ll stay with the Microsoft solution that will still work in 10 years.
评论 #12601643 未加载
评论 #12601639 未加载
评论 #12602017 未加载
评论 #12601699 未加载
评论 #12602869 未加载
andreareinaover 8 years ago
This is very cool. I&#x27;ve recently come to a very sincere appreciation for SQL, to the point that I&#x27;ve dumped data into an in-memory SQLite instance just to to the analysis.
euphoria83over 8 years ago
I use osquery for linux at my job. But I find its regex capabilities for specifying paths and various file names very restrictive. I really want to use this for FIM.
tkinomover 8 years ago
Is anyone doing a GraphQL API for OsQuery for Windows?