AlecRandazzo / Packrat
Live system forensic collector
☆16Updated 2 years ago
Alternatives and similar repositories for Packrat:
Users that are interested in Packrat are comparing it to the libraries listed below
- A golang implementation of a prefetch parser.☆19Updated 6 months ago
- ☆12Updated 5 years ago
- volatility-runner is a command line application designed to speed up memory forensics using the volatility framework, primarily for insta…☆11Updated 5 years ago
- Collect autorun records from running system☆61Updated 3 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- Looks stuff up (MD5, SHA256, IP, Domains, URL's, strings e.g. mutexes)...☆36Updated 7 years ago
- ☆31Updated 4 months ago
- pollen - A command-line tool for interacting with TheHive☆35Updated 5 years ago
- Endpoint monitoring stack.☆18Updated 9 years ago
- Links to malware-related YARA rules☆15Updated 2 years ago
- ☆33Updated 3 years ago
- Set of utilities for getting information about Windows Events☆15Updated 6 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 6 years ago
- Notebooks created to attack and secure Active Directory environments☆27Updated 5 years ago
- Windows Thingies in Python for live use.☆24Updated 5 years ago
- ☆10Updated 5 years ago
- Attempt to replicate the functions of auto_rip by Corey Harrell in Python.☆13Updated 7 months ago
- Cybersecurity Incidents Mind Maps☆33Updated 3 years ago
- ☆12Updated 7 years ago
- Analytics for Accounting logs from Network devices☆17Updated 4 years ago
- Scripts and tools created for appx analysis talk (Magnet summit 2019)☆16Updated last year
- pocket guide for core threat hunting concepts☆23Updated 4 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆23Updated last year
- A collection of threat intelligence data such as IOC, Yara and Snort/Suricata Rules etc.☆10Updated 5 years ago
- OSSEM Modular☆27Updated 4 years ago
- PowerSponse is a PowerShell module focused on targeted containment and remediation during incident response.☆38Updated 3 years ago
- Win32 utility for auditing TCP connections☆56Updated 4 years ago
- ☆28Updated 2 months ago
- Virustotal Data to Timesketch☆17Updated 6 years ago
- PowerGRR is an API client library in PowerShell working on Windows, Linux and macOS for GRR automation and scripting.☆56Updated 3 years ago