A curated list of tools for incident response
☆14Jan 22, 2024Updated 2 years ago
Alternatives and similar repositories for awesome-incident-response
Users that are interested in awesome-incident-response are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- FileSigExtractor is a python based tool which extracts the file signatures of all files within a directory and writes the output to a CSV…☆10Jul 15, 2023Updated 3 years ago
- Invoke-LiveResponse☆150Feb 22, 2022Updated 4 years ago
- ircollect☆31Aug 7, 2013Updated 13 years ago
- Easily create index of your SANS books☆18Oct 28, 2022Updated 3 years ago
- Quick iOS Backup UnFunkerizor☆22May 25, 2021Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆33Nov 21, 2024Updated last year
- ☆26Jul 23, 2024Updated 2 years ago
- ☆11Apr 25, 2021Updated 5 years ago
- Windows Thingies in Python for live use.☆24Apr 22, 2019Updated 7 years ago
- A series of python scripts to extract information from SQLite Data Files☆22Nov 15, 2025Updated 9 months ago
- Information about the open-source-dfir slack community☆29Jun 17, 2023Updated 3 years ago
- An x86/x64-based memory scanner written in Visual C++. Can search for and modify bytes, integers, and strings.☆13Dec 29, 2023Updated 2 years ago
- SysScout is a fully encapsulated script that quickly and easily pulls local machine information from Linux-Based systems. A simple, easy…☆13Oct 20, 2017Updated 8 years ago
- Contains compiled binaries of Volatility☆37May 18, 2025Updated last year
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Automated forensics written in PowerShell☆34Sep 29, 2019Updated 6 years ago
- CRITs - Collaborative Research Into Threats☆21Mar 13, 2019Updated 7 years ago
- A PE Header-Based Antivirus Tool☆12Nov 14, 2014Updated 11 years ago
- Digital Forensics Artifacts Knowledge Base☆90May 16, 2026Updated 3 months ago
- ☆35Aug 4, 2018Updated 8 years ago
- This tool is meant to parse an NTFS $MFT file.☆15Mar 26, 2024Updated 2 years ago
- PowerShell version of Fail2Ban☆14Oct 10, 2019Updated 6 years ago
- Windows 10 Live Information viewer☆40Jan 27, 2022Updated 4 years ago
- A test case runner for Sigma rules☆14Aug 14, 2024Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Parses the WMI object database....looking for persistence☆35Dec 12, 2019Updated 6 years ago
- \ PowerAvails Powershell /☆10Jun 30, 2018Updated 8 years ago
- An automated phishing tool with 30+ templates. This Tool is made for educational purpose only ! Author will not be responsible for any mi…☆11Oct 1, 2022Updated 3 years ago
- Modular command-line threat hunting tool & framework.☆17Jul 20, 2020Updated 6 years ago
- Various short scripts and tools used for Digital Forensics☆14Jul 9, 2026Updated last month
- Short scripts which use the registry to enable or disable write-blocking for removable disks☆36Oct 12, 2023Updated 2 years ago
- ☆29Oct 15, 2025Updated 10 months ago
- The most comprehensive NTFS USN Journal parser: full path reconstruction (CyberCX Rewind), TriForce correlation (MFT + LogFile + UsnJrnl)…☆31Jul 28, 2026Updated 3 weeks ago
- Sample SecOps scripts and Utilities☆12Jun 19, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆17Nov 9, 2018Updated 7 years ago
- HAR object eXtractor.☆15Apr 23, 2019Updated 7 years ago
- PowerShell scripts for running Magnet RESPONSE forensic collection tool in large enterprises.☆36Jan 9, 2025Updated last year
- Invoke-Forensics provides PowerShell commands to simplify working with the forensic tools KAPE and RegRipper.☆118Nov 28, 2023Updated 2 years ago
- A tool for checking a hash:pass pot file for hashes from a user:hash file☆12Oct 23, 2016Updated 9 years ago
- A tool to automatically decode and translate any TCP hexa payload data form any language to english.☆18Apr 23, 2022Updated 4 years ago
- A DFIR tool to collect artifacts on macOS☆57Mar 1, 2020Updated 6 years ago