Products/Security/mquire

mquire

An osquery-inspired memory forensics tool that enables SQL-based querying of Linux kernel memory snapshots without requi

Security

About

An osquery-inspired memory forensics tool that enables SQL-based querying of Linux kernel memory snapshots without requiring external debug symbols. Written in Rust, it leverages embedded BTF and Kallsyms data to enumerate processes, open files, and network connections.

Key Facts

Category
Security
Discovered via
newsletter:TLDR

Links

Similar products worth knowing

Want products like this in your inbox every morning?

Five products. Every morning. Written by someone who actually cares whether they're good or not. Free forever, unsubscribe whenever.