EDR Script Runner (0.0.5)

dan-snelson
Valued Contributor II
A proof-of-concept, caveat emptor workflow for securely executing a repository-hosted script

EDR Script Runner Hero.png

Background

While EDR tools can excel at running one-off code on a limited number of endpoints, device management solutions are often best suited for executing predefined policies at scale.

EDR Script Runner strives to strike a balance between the immediate, dynamic needs of threat hunting teams and the reliability of a MDM server, by securely executing a repository-hosted script, only when necessary.

Continue reading …

0 REPLIES 0