27 results for “topic:velociraptor”
This project is a SIEM with SIRP and Threat Intel, all in one.
A tool collection for filtering and visualizing logon events. Designed to help answering the "Cotton Eye Joe" question (Where did you come from where did you go) in Security Incidents and Threat Hunts
The CyberCX Digger project is designed to help Australian organisations determine if they have been impacted by certain high profile cyber security incidents. Digger provides threat hunting functionality packaged in a simple-to-use tool, allowing users to detect certain attacker activities; all for free.
Pipeline that allows sending forensic artifacts to OpenRelik for automatic processing
VTC - Velociraptor Timeline Creator
CLI generator for Velociraptor offline collector
Scripts to for ready-to-use Velociraptor instance deployment in Azure
Velociraptor support for VSCode
This guide is for setting up Velociraptor in Kubernetes (AWS)
A deployment and testing platform for Velociraptor's client artifacts
SECUBIAN is a French Linux distribution focused on evidence processing during Incident Response.
No description provided.
Simple anydesk log collector written in VQL for velociraptorIR and is an edited version of the file collector artifact. This file was made while I worked for ESTIJABAH company
Evidence Collection & Handling Orchestrator
A GitHub Action to setup Velociraptor
A Velociraptor artifact for automated Thor YARA scanning
No description provided.
SPAm IP Tester: a CLI for those IP addresses that don't look friendly
Custom Artifacts for Rapid7 Velociraptor Software
Understanding what forensic artifacts are present in the Windows and Linux Operating Systems, how to collect them, and leverage them to investigate security incidents.
Blue-team portfolio: SOC detection engineering, malware analysis, vulnerability management.
Sample configurations for velociraptor offline collections
Custom velociraptor artifacts
A simple template for Deno.
This tool monitors Velociraptor's syslog messages for specific actions performed by users within the Velociraptor DFIR platform. When certain patterns are detected, it sends detailed email notifications to designated recipients, providing enhanced visibility into user activities and potential security events.
A collection of basic DFIR tips, tricks and common places to hunt.
Velociraptor Troubleshooting & Analyst Guide — A centralized knowledge base for SOC and DFIR teams to document, analyze, and resolve Velociraptor operational issues. Includes step-by-step troubleshooting runbooks, error reference guides, automation scripts, and templates for efficient investigation and response.