Yamato-Security / RustyBlueLinks
RustyBlue is a rust implementation of DeepblueCLI, a forensics log analyzer for finding evidence of compromise from windows event logs.
☆72Updated 2 years ago
Alternatives and similar repositories for RustyBlue
Users that are interested in RustyBlue are comparing it to the libraries listed below
Sorting:
- CDIR (Cyber Defense Institute Incident Response) Collector - live collection tool based on oss tool/library☆160Updated 8 months ago
- A DFIR tool to analyze artifacts on macOS☆33Updated 4 years ago
- R-CSIRT Linux Triage tool☆39Updated 7 years ago
- Ghidra Script for automated analysis of EMOTET☆17Updated 4 years ago
- ログ分析トレーニング用コンテンツ☆92Updated 4 years ago
- EXIST is a web application for aggregating and analyzing cyber threat intelligence.☆152Updated 2 years ago
- CDIR Analyzer - parsers for data collected by CDIR Collector☆18Updated 2 years ago
- Yet Another Memory Analyzer for malware detection☆186Updated 3 months ago
- Phishing URL dataset from JPCERT/CC☆181Updated 2 months ago
- Decentralized Cyber Threat Intelligence Kaizen Framework☆26Updated 3 years ago
- Sample evtx files to use for testing hayabusa detection rules☆58Updated 8 months ago
- 分析ツール結果シート☆19Updated 7 years ago
- ☆22Updated 9 months ago
- A DFIR tool to collect artifacts on macOS☆55Updated 5 years ago
- Automatically update IoC for lucky visitor scam☆26Updated 3 months ago
- Ochakai Hardening is a tool that allows users to easily experience incident response training.☆18Updated 9 months ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆64Updated 2 years ago
- ☆62Updated last year
- OSS Vulnerability Scanner for Windows Platform☆154Updated 5 years ago
- Hands-on Exercises for "Dangerous attack paths: Modern Development Environment Security - Devices and CI/CD pipelines"☆45Updated 2 years ago
- JPCERT/CC public YARA rules repository☆110Updated 7 months ago
- Takajō (鷹匠) is a Hayabusa results analyzer.☆127Updated this week
- Memory Forensic System on Cloud☆90Updated last year
- Simple SQL Injection Lab: Hands-on guide and Docker setup for exploring MySQL and PostgreSQL injection techniques☆31Updated 2 years ago
- Build a local copy of Known Exploited Vulnerabilities Catalog by CISA. Server mode for easy querying.☆21Updated last week
- Documentation and tools to curate Sigma rules for Windows event logs into easier to parse rules.☆13Updated 5 months ago
- macOS forensic timeline generator using the analysis result DBs of mac_apt☆94Updated last year
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (ext4, XFS) journals (not systemd-journald logs), gene…☆76Updated this week
- A dataset with CloudTrail events from an attack simulation using Stratus.☆21Updated 2 years ago
- ETW forensic tool for Volatility3 plugin☆15Updated 7 months ago