
Leveraging Osquery for DFIR at Scale

Sohini Mukherjee at BSidesSF 2020

Security Breaches are happening every other week - understanding the anatomy of an attack is a daunting task that Incident Responders face. Attackers will leave behind breadcrumbs. Forensics tools can be time & resource intensive. Can we explore an alternate method to fast track the IR process?