05t3 / DFIRLinks
I have created this repository purposely to add short notes on some of the things i learn. This repo is intended for n00bs like me in the Forensics field , seasoned investigators and anybody else interested in matters forensics.
☆9Updated 2 years ago
Alternatives and similar repositories for DFIR
Users that are interested in DFIR are comparing it to the libraries listed below
Sorting:
- Labs for Practical Malware Analysis & Triage☆1,001Updated 4 months ago
- This repository contains sample programs that mimick behavior found in real-world malware. The goal is to provide source code that can be…☆652Updated last year
- ☆1,060Updated last year
- This repository contains sample programs written primarily in C and C++ for learning native code reverse engineering.☆660Updated last year
- Practical Windows Forensics Training☆674Updated last year
- ☆454Updated 3 years ago
- DFIR LABS - A compilation of challenges that aims to provide practice in simple to advanced concepts in the following topics: Digital For…☆314Updated 3 weeks ago
- A workshop about Malware Development☆1,692Updated 2 years ago
- Containing my notes, practice binaries + solutions, blog posts, etc. for the Offensive Security Exploit Developer (OSED/EXP-301)☆736Updated 11 months ago
- ☆669Updated last year
- Different learning materials☆227Updated 4 months ago
- Purple Team Resources for Enterprise Purple Teaming: An Exploratory Qualitative Study by Xena Olsen.☆660Updated 2 years ago
- ⚠️ malware development☆584Updated last year
- EDR Lab for Experimentation Purposes☆1,320Updated 3 weeks ago
- Handbook of windows forensic artifacts across multiple Windows version with interpretation tips and some examples. Work in progress!☆374Updated last year
- You didn't think I'd go and leave the blue team out, right?☆1,687Updated this week
- A curated list of awesome Memory Forensics for DFIR☆471Updated 5 months ago
- Map tracking ransomware, by OCD World Watch team☆469Updated 5 months ago
- SOC Interview Questions☆1,179Updated 11 months ago
- Contains all the material from the DEF CON 31 workshop "(In)direct Syscalls: A Journey from High to Low".☆684Updated 2 months ago
- ☆874Updated last year
- Useful resources for SOC Analyst and SOC Analyst candidates.☆789Updated last year
- https://academy.tcm-sec.com/☆130Updated 2 months ago
- ☆49Updated 2 years ago
- Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab☆2,171Updated last year
- Describing and documenting the process of deploying a HomeLab for security research and training☆38Updated 3 months ago
- Windows Local Privilege Escalation Cookbook☆1,160Updated 6 months ago
- ☆501Updated last year
- Living Off The Land Drivers☆1,258Updated this week
- The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifa…☆603Updated 5 months ago