SQL powered operating system instrumentation and analytics


Current versions:

stable 3.2.4
bottle 🍾 high_sierra, sierra

Revision: 1

Depends on:

augeas 1.10.1 Configuration editing tool and API
boost 1.67.0 Collection of portable C++ source libraries
gflags 2.2.1 Library for processing command-line flags
glog 0.3.5 Application-level logging library
libarchive 3.3.2 Multi-format archive and compression library
libmagic 5.33 Implementation of the file(1) command
lldpd 1.0.1 Implementation of IEEE 802.1ab (LLDP)
librdkafka 0.11.4 The Apache Kafka C/C++ library
openssl 1.0.2o SSL/TLS cryptography library
rapidjson 1.1.0 JSON parser/generator for C++ with SAX and DOM style APIs
rocksdb 5.13.1 Embeddable, persistent key-value store for fast storage
sleuthkit 4.6.1 Forensic toolkit
thrift 0.11.0 Framework for scalable cross-language services development
yara 3.7.1 Malware identification and classification tool
xz 5.2.4 General-purpose data compression with high compression ratio
zstd 1.3.4 Zstandard is a real-time compression algorithm

Depends on when building from source:

bison 3.0.4 Parser generator
cmake 3.11.2 Cross-platform make
python@2 2.7.15 Interpreted, interactive, object-oriented programming language

Requires: :macos

JSON API for osquery

Formula code on GitHub

Fork me on GitHub