wennan.he
11/03/2022, 9:49 PMwennan.he
11/03/2022, 10:51 PMBrandon Mesa
11/04/2022, 2:51 PMAvik Sengupta
11/04/2022, 6:53 PMEric Ruiz Gimenez
11/06/2022, 1:58 PMEric Ruiz Gimenez
11/06/2022, 5:20 PMSlackbot
11/07/2022, 3:27 AMnick fury
11/08/2022, 8:18 AMBrad Girardeau
11/08/2022, 8:32 PMwennan.he
11/08/2022, 9:35 PMEric Ruiz Gimenez
11/09/2022, 3:30 PMallister
11/10/2022, 7:43 AMallister
11/10/2022, 7:52 AMJoe
11/10/2022, 10:22 PMosquery> SELECT label FROM augeas WHERE path = 'etc/sudoers';
osquery>
Current running versions:
OSquery: v5.4.0
Fleet: v4.17.1Maksym Varnakov
11/11/2022, 9:38 AMSELECT time, pid, path, parent AS ppid, (SELECT path FROM process_events AS pp WHERE pp.pid=p.parent) ppath FROM process_events AS p WHERE syscall='execve';
Rachana
11/12/2022, 12:36 AMnick fury
11/13/2022, 12:02 PMlankesh
11/13/2022, 7:50 PMslevchenko
11/14/2022, 9:57 AMslevchenko
11/14/2022, 11:20 AMMaksym Varnakov
11/14/2022, 12:10 PMLili
11/14/2022, 1:31 PMslevchenko
11/14/2022, 1:35 PMBrandon Mesa
11/14/2022, 4:37 PMAdam Kuncewitch
11/14/2022, 7:45 PMReza Kazemy
11/15/2022, 4:59 AMMaksym Varnakov
11/15/2022, 10:27 AMnick fury
11/15/2022, 8:12 PMRingo
11/16/2022, 2:30 PMZach Zeid
11/17/2022, 6:59 PM