Title
#general
SK

SK

05/10/2020, 5:46 AM
Hey guys, I released a blog based on the presentation I gave at infosecjupyterthon recording:

https://youtu.be/QCVd4Svtaa8

“Untangling the Osquery tables web🕸️ using Jupyter Notebooks📓” by Sevickson https://link.medium.com/exGJNfIKl6 Let me know if you have any comments or ideas. 😉
theopolis

theopolis

05/11/2020, 1:05 AM
Very cool, I played around with the graph to inspect the highly connected columns and your note:
It is quite difficult to create connections based only on column name, as some columns have the same name but different kind of data.
1:05 AM
Is true but for the most part you can join on those highly connected names.
SK

SK

05/11/2020, 4:15 AM
Hey @theopolis, thanks for your feedback. You are right, maybe I was not clear with that textline. What I was trying was just by looking at the column names or at least the graph and know I can join the tables. Joining on the highly connected columns is still possible indeed. I am working on a next iteration of the graph and thinking of using osquery-python, would you have some time for a few questions?