cisagov / CHIRP
A DFIR tool written in Python.
☆1,041Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for CHIRP
- Sparrow.ps1 was created by CISA's Cloud Forensics team to help detect possible compromised accounts and applications in the Azure/m365 en…☆1,418Updated last year
- GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]☆1,407Updated 3 months ago
- CrackQ: A Python Hashcat cracking queue system☆922Updated 2 months ago
- Cybersecurity Evaluation Tool☆1,453Updated this week
- Threat Pursuit Virtual Machine (VM): A fully customizable, open-sourced Windows-based distribution focused on threat intelligence analysi…☆1,235Updated last year
- Watcher - Open Source Cybersecurity Threat Hunting Platform. Developed with Django & React JS.☆857Updated this week
- ☆614Updated last year
- Collect information of Windows PC when doing incident response☆242Updated last year
- Storage Explorer - Publicly open storage viewer (Amazon S3 Bucket, Azure Blob, FTP server, HTTP Index Of/)☆432Updated last year
- Fetch information about a public Google document.☆844Updated 11 months ago
- Curated Intelligence is working with analysts from around the world to provide useful information to organisations in Ukraine looking for…☆912Updated last year
- The SOC Analysts all-in-one CLI tool to automate and speed up workflow.☆1,349Updated last month
- A PrintNightmare (CVE-2021-34527) Python Scanner. Scan entire subnets for hosts vulnerable to the PrintNightmare RCE☆783Updated 5 months ago
- A Simple Ransomware Vaccine☆944Updated last year
- Rapidly Search and Hunt through Windows Forensic Artefacts☆2,860Updated last week
- Understand adversary tradecraft and improve detection strategies☆703Updated last year
- An experimentation and research platform to investigate the interaction of automated agents in an abstract simulated network environments…☆1,665Updated last month
- IntelOwl: manage your Threat Intelligence at scale☆3,836Updated this week
- This project aims to provide a central repository for many useful Tsunami Security Scanner plugins.☆878Updated this week
- Extract and Visualize Data from URLs using Unfurl☆610Updated 3 weeks ago
- Scaling Network Scanning. Changes prior to 1.0 may cause difficult to avoid backwards incompatibilities. You've been warned.☆626Updated 3 months ago
- Logging Made Easy (LME) is a no-cost and open logging and protective monitoring solution serving all organizations.☆841Updated this week
- Hundreds of Offensive and Useful Docker Images for Network Intrusion. The name says it all.☆1,209Updated 10 months ago
- ☆436Updated 2 years ago
- Sysmon event simulation utility which can be used to simulate the attacks to generate the Sysmon Event logs for testing the EDR detection…☆831Updated 2 years ago
- SunBurst DGA Decode Script☆207Updated 3 years ago
- Tracking interesting Linux (and UNIX) malware. Send PRs☆1,128Updated 3 weeks ago
- Digital Forensics Investigation Platform☆768Updated 3 weeks ago
- Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Po…☆2,962Updated 3 months ago