├── .gitignore ├── LICENSE ├── README.md ├── active_response_extension.py ├── disable-account.sh ├── firewall-drop.sh ├── firewalld-drop.sh ├── host-deny.sh ├── ip-customblock.sh ├── ipfw.sh ├── ipfw_mac.sh ├── kill_process.py ├── netsh.cmd ├── npf.sh ├── pf.sh ├── python_plugin_template.txt ├── route-null.cmd └── route-null.sh /.gitignore: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/.gitignore -------------------------------------------------------------------------------- /LICENSE: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/LICENSE -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/README.md -------------------------------------------------------------------------------- /active_response_extension.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/active_response_extension.py -------------------------------------------------------------------------------- /disable-account.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/disable-account.sh -------------------------------------------------------------------------------- /firewall-drop.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/firewall-drop.sh -------------------------------------------------------------------------------- /firewalld-drop.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/firewalld-drop.sh -------------------------------------------------------------------------------- /host-deny.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/host-deny.sh -------------------------------------------------------------------------------- /ip-customblock.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/ip-customblock.sh -------------------------------------------------------------------------------- /ipfw.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/ipfw.sh -------------------------------------------------------------------------------- /ipfw_mac.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/ipfw_mac.sh -------------------------------------------------------------------------------- /kill_process.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/kill_process.py -------------------------------------------------------------------------------- /netsh.cmd: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/netsh.cmd -------------------------------------------------------------------------------- /npf.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/npf.sh -------------------------------------------------------------------------------- /pf.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/pf.sh -------------------------------------------------------------------------------- /python_plugin_template.txt: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/python_plugin_template.txt -------------------------------------------------------------------------------- /route-null.cmd: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/route-null.cmd -------------------------------------------------------------------------------- /route-null.sh: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sttor/osquery-wazuh-response/HEAD/route-null.sh --------------------------------------------------------------------------------