cisagov / CHIRP
A DFIR tool written in Python.
☆1,044Updated 3 years ago
Alternatives and similar repositories for CHIRP:
Users that are interested in CHIRP are comparing it to the libraries listed below
- GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]☆1,420Updated 5 months ago
- Sparrow.ps1 was created by CISA's Cloud Forensics team to help detect possible compromised accounts and applications in the Azure/m365 en…☆1,420Updated 2 years ago
- Understand adversary tradecraft and improve detection strategies☆707Updated last year
- Threat Pursuit Virtual Machine (VM): A fully customizable, open-sourced Windows-based distribution focused on threat intelligence analysi…☆1,244Updated last year
- ☆617Updated last year
- A Simple Ransomware Vaccine☆952Updated last year
- Storage Explorer - Publicly open storage viewer (Amazon S3 Bucket, Azure Blob, FTP server, HTTP Index Of/)☆438Updated last year
- ☆560Updated last year
- Cybersecurity Evaluation Tool☆1,487Updated this week
- Tracking interesting Linux (and UNIX) malware. Send PRs☆1,141Updated last month
- Collect information of Windows PC when doing incident response☆243Updated last year
- Fetch information about a public Google document.☆861Updated last year
- Watcher - Open Source Cybersecurity Threat Hunting Platform. Developed with Django & React JS.☆876Updated this week
- SunBurst DGA Decode Script☆207Updated 4 years ago
- CrackQ: A Python Hashcat cracking queue system☆926Updated 4 months ago
- Curated Intelligence is working with analysts from around the world to provide useful information to organisations in Ukraine looking for…☆918Updated last year
- Adversarial Threat Landscape for AI Systems☆1,058Updated last year
- Digital Forensics Investigation Platform☆793Updated 3 months ago
- A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365☆771Updated 2 years ago
- Red Team K8S Adversary Emulation Based on kubectl☆819Updated 3 years ago
- An experimentation and research platform to investigate the interaction of automated agents in an abstract simulated network environments…☆1,674Updated this week
- OSINT tool - gets data from services like shodan, censys etc. in one app☆639Updated last year
- A framework for constructing self-spreading binaries☆1,003Updated last year
- 🔎Searches Hash APIs to crack your hash quickly🔎 If hash is not found, automatically pipes into HashCat⚡☆1,308Updated last year
- A PrintNightmare (CVE-2021-34527) Python Scanner. Scan entire subnets for hosts vulnerable to the PrintNightmare RCE☆789Updated 7 months ago
- A Python tool used to automate the execution of the following tools : Nmap , Nikto and Dirsearch but also to automate the report generati…☆290Updated 2 years ago
- ☆436Updated 2 years ago
- Set of Mindmaps providing a detailed overview of the different #Microsoft auditing capacities for Windows, Exchange, Azure,...☆1,055Updated 4 months ago