thor
09/25/2019, 4:15 AMMario De Tore
09/25/2019, 4:19 AM- SELECT uuid AS host_uuid FROM system_info;
- SELECT hostname AS hostname FROM system_info;
- SELECT version AS osquery_version FROM osquery_info;
select * from processes;
alessandrogario
09/25/2019, 9:25 AMMario De Tore
09/25/2019, 9:44 AMalessandrogario
09/25/2019, 10:07 AMMario De Tore
09/25/2019, 11:30 AMseph
09/25/2019, 1:06 PMgetGidFromSid
or getUidFromSid
in https://github.com/osquery/osquery/blob/master/osquery/process/windows/process_ops.cpppacketzero
09/25/2019, 5:51 PMseph
09/25/2019, 6:10 PMpacketzero
09/25/2019, 11:17 PM