dfir-dd / dfir-toolkitLinks
CLI tools for forensic investigation of Windows artifacts
☆347Updated 3 months ago
Alternatives and similar repositories for dfir-toolkit
Users that are interested in dfir-toolkit are comparing it to the libraries listed below
Sorting:
- Advanced Bash script designed for conducting digital forensics on Linux systems☆145Updated last year
- MISP Playbooks☆216Updated 3 weeks ago
- Handbook of windows forensic artifacts across multiple Windows version with interpretation tips and some examples. Work in progress!☆399Updated last year
- Purpleteam scripts simulation & Detection - trigger events for SOC detections☆189Updated 10 months ago
- Map tracking ransomware, by OCD World Watch team☆477Updated 8 months ago
- Repository for sharing examples of our artifacts data and for use in new analyst recruitment.☆108Updated 6 months ago
- ☆187Updated last year
- CTF styled Digital Forensics labs, as offered in FAST NUCES Karachi during Spring 2023.☆315Updated 2 years ago
- ☆165Updated 2 years ago
- Awesome list of keywords and artifacts for Threat Hunting sessions☆614Updated 3 months ago
- A collection of companies that disclose adversary TTPs after they have been breached