Channels
doorman
zercurity
infrastructure
code-review
queryhub
apple-silicon
carving
goquery
aws
querycon
golang
file-carving
fuzzing
help-proxy
darkbytes
process-auditing
general
windows
random
fleet-dev
tls
fim
awallaby
zentral
zeek
auditing-warroom
linen-dev
fleetosquery
plugins
jobs
arm-architecture
uptycs
android_tests
selfgroup
vendor-feeds
fleet
eclecticiq-polylogyx-extension
ebpf
website
core
macos
kolide
osctrl
extensions
foundation
sql
officehours
linux
community-feeds
Powered by
#general
Title
# general
v
ventura
08/01/2018, 2:03 PM
is there a way to get queries from the shell_history table to return history data from shells besides sh and bash?
s
spookerlabs
08/01/2018, 7:46 PM
Why not start to use process_events to monitor all commands ? In my opinion much more powerful and "realtime" compared to shell_history data
v
ventura
08/01/2018, 7:54 PM
I'm hoping to do both. I want the shell_history so that I can preserve information about redirects, like | or >
process_events works really well
5 Views
Post