Repository navigation

#

dfir-automation

Automate the creation of a lab environment complete with security tooling and logging best practices

HTML
4821
1 年前

MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs

PowerShell
740
3 天前

A little tool to play with Azure Identity - Azure and Entra ID lab creation tool. Blog: https://medium.com/@iknowjason/sentinel-for-purple-teaming-183b7df7a2f4

Python
586
5 个月前

Volatile Artifact Collector collects a snapshot of volatile data from a system. It tells you what is happening on a system, and is of particular use when investigating a security incident.

Python
255
9 个月前
Python
240
7 个月前

Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.

HTML
135
3 年前

Rip Raw is a small tool to analyse the memory of compromised Linux systems.

Python
132
4 年前

Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https://circl.lu/services/hashlookup/

Python
126
2 年前

Fast lookup server for NSRL and other hash database used in digital forensic

Python
45
3 年前

unix_collector is a Live Response collection script for Incident Response on UNIX-like systems using native binaries. Supports AIX, Android, ESXi, FreeBSD, Linux, macOS, NetBSD, NetScaler, OpenBSD and Solaris systems artifacts.

Shell
37
2 个月前

Simple Imager has been created for performing live acquisition of Windows based systems in a forensically sound manner

Batchfile
32
3 年前

Pipeline that allows sending forensic artifacts to OpenRelik for automatic processing

Python
31
3 个月前

MAES: M365 Analyzer & Extractor Suite Po

JavaScript
26
5 天前

A collection of Terraform and Ansible scripts that automatically (and quickly) deploys a small Velociraptor R&D lab.

HCL
21
4 年前

Toolset to analyze disks encrypted with McAFee FDE technology

Python
19
4 年前

ActiveMime File Format Documentation

Python
18
4 年前

Easy automated vagrant provisioning of Windows 10 with flarevm tools installed for Digital Forensics and Malware Analysis Lab.

HCL
17
3 年前

Sabonis, a Digital Forensics and Incident Response pivoting tool

Python
17
3 年前

Kali in a Box - Containerized and fully operational within your Browser

Shell
12
1 年前