SQL powered operating system instrumentation, monitoring, and analytics.
Endpoint detection and forensics
Query laptops and servers, hunt for threats on them and collect forensic evidence.
Changes in this category (RSS)
Side by side
| Tool | Stars | Licence | Terms | Self-hosted | Language | Latest | Last push |
|---|---|---|---|---|---|---|---|
| osquery | 24k | Other | Open source | Yes | C++ | 5.23.1 | 2026-10-06 |
| GRR Rapid Response | 5.1k | Apache-2.0 | Open source | Yes | Python | v.4.0.0.0-release | 2026-10-01 |
| Velociraptor | 4.3k | Other | Open source | Yes | Go | v0.77.3 | 2026-10-05 |
| Chainsaw | 3.7k | GPL-3.0 | Open source | Yes | Rust | v2.16.5 | 2026-09-23 |
| Hayabusa | 3.4k | AGPL-3.0 | Open source | Yes | Rust | v4.1.0 | 2026-10-04 |
5 tools
GRR Rapid Response: remote live forensics for incident response
- Language
- Python
- Licence
- Apache-2.0
- Stars
- 5.1k
- Latest
- v.4.0.0.0-release
- Last push
- 2026-10-01
Digging Deeper....
Rapidly Search and Hunt through Windows Forensic Artefacts
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.