SOLVE-IT-DF / solve-it
The SOLVE-IT knowledge base for digital forensics
☆27Updated this week
Alternatives and similar repositories for solve-it:
Users that are interested in solve-it are comparing it to the libraries listed below
- ☆22Updated 3 months ago
- Case_Notes.py is a cross-platform (Windows, macOS, & Linux) python script to help make the documentation process easier.☆26Updated last year
- Finding ClickFix and FakeCAPTCHA like it's 1999☆35Updated this week
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆68Updated last year
- Tools and scripts to deploy and manage OpenRelik instances☆13Updated 2 months ago
- Parses USB connection artifacts from offline Registry hives☆97Updated 3 months ago
- ☆68Updated 4 months ago
- Linux Baseline and Forensic Triage Tool - BETA☆55Updated 2 years ago
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆88Updated 6 months ago
- Logbook for Digital Forensics and Incident Response☆50Updated 9 months ago
- A tool for fetching DFIR and other GitHub tools.☆23Updated this week
- Repository documenting how Threat Intelligence and / or a Threat Intelligence Platform can prove its value to an organisation.☆51Updated 6 months ago
- USN Journal full path builder☆59Updated 7 months ago
- Incident Response documents and tooling☆72Updated last year
- Forensics scripts aimed at automating & enhancing the Forensics Legend Eric Zimmerman's techniques, integrating the statistical detection…☆17Updated last year
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆84Updated 3 months ago
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆122Updated last year
- macOS Artifacts☆29Updated 2 months ago
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (EXT4, XFS) journals (not systemd-journald), generates…☆63Updated last month
- Cyber Underground General Intelligence Requirements☆92Updated last year
- A hex viewer for the sleuths!☆19Updated last month
- VelociraptorMCP is a Model Context Protocol bridge for exposing LLMs to MCP clients.☆23Updated this week
- A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.☆155Updated last month
- A preconfigured Velociraptor triage collector☆51Updated last week
- A repo hosting the Markua content for the EZ Tools manuals hosted on Leanpub☆72Updated last year
- Some important DFIR Resources☆83Updated 2 years ago
- The ultimate repository for remotely deploying Crowdstrike sensors quickly and discreetly on any other EDR platform.☆23Updated last week
- A simple script to read the contents of a zip/tar/folder and extract metadata☆19Updated 3 weeks ago
- ☆23Updated 8 months ago
- Remote access and Antivirus Logging Database☆42Updated last year