49 results for “topic:digital-forensics-incident-response”
Collaborative Incident Response platform
A curated list of awesome Memory Forensics for DFIR
A curated list of resources for DFIR through Microsoft Defender for Endpoint leveraging kusto queries, powershell scripts, tools such as KAPE and THOR Cloud and more.
practical toolkit for cybersecurity and IT professionals. It features a detailed Linux cheatsheet for incident response
CLI tools for forensic investigation of Windows artifacts
A high-speed forensic timeline engine for Windows forensic artifact CSV output built for DFIR investigators. Quickly consolidate CSV output from processed triage evidence for Eric Zimmerman (EZ Tools) Kape, Axiom, Hayabusa, Chainsaw and Nirsoft into a unified timeline.
Advanced Bash script designed for conducting digital forensics on Linux systems
A collection of digital forensics tools for verification, investigations, diagnostics, software, libraries, learning tutorials, frameworks, academic and practical resources in Cybersecurity
Simple Imager has been created for performing live acquisition of Windows based systems in a forensically sound manner
Cryptocurrency Discovery and Triage Tool - Identify multiple cryptocurrency addresses and transactions from various wallet applications!
This repo is all about Blue teamming and CyberDefenders Write-up for their DFIR challenges
KIISC Digital Forensics Challenge 2021 - DogeCoin's WriteUp
Automate forensic traige package collection and evidence parsing with KAPE and Crowdstrike
The DFIR.Science research blog about digital forensic investigation.
Tools and Techniques for Digital Forensics and Incident Response
KIISC Digital Forensics Challenge 2022 - ISEGYE_IDOL's WriteUp
Making KAPE forensic artifact processing easier
My digital forensics notebook
رايت أب لتحديات م.فيصل الحميد في مجال الفريق الدفاعي
Python package for reading data from Mozilla Firefox data sources.
MacFIRE – (Mac Forensic Investigation & Response Engine)
osquery CTI, DFIR
Masstin: High-Speed DFIR Tool written in Rust and Graph Visualization in Neo4j for Comprehensive Lateral Movement Analysis
Uses the iTunes API and Google Play Scraper to lookup the app names of bundleID's
zeek network security monitoring NIDS HIDS
Secure Readiness Storage
SUDARSHAN is a simple, interactive digital forensics framework that helps investigators analyze data, recover evidence, and generate reports — all from one easy-to-use script.
network security monitoring NIDS HIDS CTI DFIR
ELK network visibility CTI DFIR
A collection of Cyber Security related scripts, programs, and tools create for Microsoft Windows PowerShell.