binalyze / dfir-labLinks
☆10Updated 2 months ago
Alternatives and similar repositories for dfir-lab
Users that are interested in dfir-lab are comparing it to the libraries listed below
Sorting:
- ☆21Updated 2 years ago
- enpoint detection / live analysis & sandbox host / signatures quality test☆44Updated 4 years ago
- Sigma Engine implementation in TypeScript☆28Updated 2 years ago
- ☆13Updated 2 years ago
- my MSTICpy practice and custom tools repository☆11Updated 6 months ago
- Linux Baseline and Forensic Triage Tool - BETA☆57Updated 3 years ago
- Open Source Cyber Threat Intelligence Feed Collector☆17Updated 4 years ago
- A preconfigured Windows-based system designed for rapid forensic investigations in both Azure and AWS.☆39Updated last year
- Simple Script to Help You Find All Files Has Been Modified, Accessed, and Created In A Range Time.☆27Updated 2 years ago
- Malware Checker Tool generates an HTML report by comparing Hashes, Ip Addresses and URL Addresses through the VirusTotal database.☆36Updated 3 years ago
- Threat Hunt Investigation Methodology and Procedure☆15Updated 3 years ago
- Chista | Open Threat Intelligence Framework☆61Updated last year
- Detection rule validation☆40Updated 2 years ago
- Thor Artifacts for Velociraptor☆18Updated last year
- The Chupacabra case study was created by the ADEO dfir team due to the lack of resources and applications in the digital forensics field.…☆23Updated 3 years ago
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆68Updated 2 years ago
- Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.☆62Updated last year
- This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports☆73Updated 3 months ago
- CarbonBlack EDR detection rules and response actions☆73Updated last year
- Simple PowerShell script to enable process scanning with Yara.☆96Updated 3 years ago
- ATLAS - Malware Analysis Description☆21Updated 2 years ago
- ☆22Updated 2 years ago
- log-slapper is an open-source offensive security tool designed for red-team operations as the post-exploit module and assessing your Splu…☆24Updated last year
- Analysis or research tools for digital forensics☆11Updated 3 years ago
- Helping Incident Responders hunt for potential persistence mechanisms on UNIX-based systems.☆17Updated 2 years ago
- Contains compiled binaries of Volatility☆37Updated 5 months ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆54Updated 10 months ago
- Repository for different Windows DFIR related CMDs, PowerShell CMDlets, etc, plus workshops that I did for different conferences or event…☆78Updated 4 years ago
- Get-MiniTimeline - Triage Collection and Timeline Generation w/ KAPE☆33Updated last year
- Jupyter Notebooks for Cyber Threat Intelligence☆35Updated 2 years ago