botherder / pcqfLinks
pcqf (PC Quick Forensics) helps quickly gathering forensic evidence from Windows, Mac, and Linux systems, in order to identify potential traces of compromise.
☆135Updated 2 years ago
Alternatives and similar repositories for pcqf
Users that are interested in pcqf are comparing it to the libraries listed below
Sorting:
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆110Updated 7 years ago
- Scripts to analyze stuff☆147Updated 3 months ago
- PhishDetect is a library to help identify phishing pages☆109Updated 2 years ago
- Collection of best practices to add OSINT into MISP and/or MISP communities☆66Updated 2 years ago
- Website crawler with YARA detection☆90Updated 2 years ago
- PROJECT PAUSED 1/11/22, Tracking Threat Actor Emails in Phishing Kits. CC @PhishKitTracker on twitter if you find a #threatactoremail in …☆101Updated 3 years ago
- A toolkit for Security Researchers☆128Updated 6 years ago
- MantaRay Automated Computer Forensic Triage Tool☆65Updated 6 years ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- Looks stuff up (MD5, SHA256, IP, Domains, URL's, strings e.g. mutexes)...☆36Updated 8 years ago
- Please use https://github.com/veeral-patel/true-positive instead☆69Updated 2 years ago
- Tools for the Computer Incident Response Team☆146Updated 8 years ago
- Set of Maltego transforms to inferface with a MISP Threat Sharing instance, and also to explore the whole MITRE ATT&CK dataset.☆180Updated last year
- 1-Click push forensics evidence to the cloud☆141Updated last month
- automate your MISP installs☆68Updated 5 years ago
- Extract indicators of compromise from text, including "escaped" ones.☆162Updated 5 years ago
- A collection of typical false positive indicators☆55Updated 4 years ago
- A collection of infosec related scripts and information.☆53Updated last year
- A modern Python-3-based alternative to RegRipper☆198Updated 7 months ago
- A list of Autopsy awesome plugins.☆75Updated 3 years ago
- Providing timelines based on OSINT Reports☆32Updated 2 years ago
- Identifies physical locations where a laptop has been based upon wireless profiles and wireless data recorded in event logs☆95Updated 4 years ago
- References for FIRST CTI 2019 Symposium presentation☆23Updated 6 years ago
- Mass static malware analysis tool☆95Updated 3 years ago
- Open source training materials for law-enforcement and organisations interested in DFIR.☆61Updated 5 months ago
- Sandbox feature upgrade with the help of wrapped samples☆76Updated 7 years ago
- threat-intelligence.eu website and repository of information about open standards, documents, methodologies and processes in threat intel…☆49Updated 2 months ago
- Slides and Other Resources from my latest Talks and Presentations☆24Updated last month
- Different tools, koen.vanimpe@cudeso.be☆136Updated 3 months ago
- Gather Open-Source Intelligence using PowerShell.☆177Updated 6 years ago