binalyze / dfir-labLinks
☆10Updated 4 months ago
Alternatives and similar repositories for dfir-lab
Users that are interested in dfir-lab are comparing it to the libraries listed below
Sorting:
- ☆21Updated 2 years ago
- enpoint detection / live analysis & sandbox host / signatures quality test☆44Updated 4 years ago
- Sigma Engine implementation in TypeScript☆28Updated 2 years ago
- Jupyter Notebooks for Cyber Threat Intelligence☆35Updated 2 years ago
- my MSTICpy practice and custom tools repository☆11Updated 7 months ago
- Hunt for SQLite files used by various applications☆27Updated last month
- ATLAS - Malware Analysis Description☆21Updated 2 years ago
- Simple PowerShell script to enable process scanning with Yara.☆96Updated 3 years ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆84Updated 2 months ago
- This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports☆75Updated 4 months ago
- ☆22Updated 2 years ago
- A repository for tracking events related to the MOVEit Transfer Cl0p Campaign☆71Updated 2 years ago
- Library of threat hunts to get any user started!☆46Updated 5 years ago
- Low budget VirusTotal Intelligence Cosplay☆20Updated 3 years ago
- Initial triage of Windows Event logs☆104Updated last year
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆54Updated last year
- Detection rule validation☆40Updated 2 years ago
- Domain Connectivity Analysis Tools to analyze aggregate connectivity patterns across a set of domains during security investigations☆45Updated 4 years ago
- ☆67Updated 2 years ago
- Rapid7 Labs operates as the division of Rapid7 focused on threat research. It is renowned for providing comprehensive threat intelligence…☆73Updated 6 months ago
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆67Updated 2 years ago
- Helping Incident Responders hunt for potential persistence mechanisms on UNIX-based systems.☆17Updated 2 years ago
- ESXi Cyber Security Incident Response Script☆25Updated last year
- Repository for different Windows DFIR related CMDs, PowerShell CMDlets, etc, plus workshops that I did for different conferences or event…☆78Updated 4 years ago
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆50Updated last year
- ☆27Updated last month
- Linux Baseline and Forensic Triage Tool - BETA☆57Updated 3 years ago
- ☆17Updated last month
- Scans a list of raccoon servers from Tria.ge and extracts the config☆15Updated 2 years ago
- C2 Active Scanner☆60Updated last year