This is a repo for cybersecurity analyst collecting artifacts in a incident response case.
☆21Feb 17, 2025Updated last year
Alternatives and similar repositories for DFIR-Toolkit
Users that are interested in DFIR-Toolkit are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Create an incident response triage toolkit for use with Windows or Linux.☆18Jun 14, 2020Updated 6 years ago
- ☆24Jun 28, 2025Updated last year
- AutoIt Analysis Library: Parser & Emulator For Malware Researchers☆22Apr 27, 2019Updated 7 years ago
- ☆24Jun 21, 2026Updated last week
- A python polymorphic engine for C programs☆11Dec 8, 2023Updated 2 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Tutorial for Writing a Kernel☆10Jun 5, 2022Updated 4 years ago
- Windows.EDB Browser☆62Mar 6, 2023Updated 3 years ago
- Fuzzing with the generated argument and environment variable☆10Jul 14, 2022Updated 3 years ago
- A super-fast proxy server port scanner一个超级快的端口扫描器☆24Aug 31, 2025Updated 9 months ago
- NDISPktScan is a plugin for the Volatility Framework. It parses the Ethernet packets stored by ndis.sys in Windows kernel space memory.☆12Oct 23, 2015Updated 10 years ago
- This script will generate hashes (MD5, SHA1, SHA256), submit the MD5 to Virus Total, and produce a text file with the results.☆15Jul 13, 2023Updated 2 years ago
- A specialized implementation of the Hierarchical Navigable Small World (HNSW) data structure adapted for efficient nearest neighbor looku…☆12Jun 15, 2026Updated 2 weeks ago
- ☆13Jan 3, 2021Updated 5 years ago
- CDIR (Cyber Defense Institute Incident Response) Collector - live collection tool based on oss tool/library☆173Oct 25, 2024Updated last year
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- F-Secure Lightweight Acqusition for Incident Response (FLAIR)☆16Jul 5, 2021Updated 4 years ago
- LiteX-based PCIe MITM, sniffing, fuzzing, device emulation☆20Feb 9, 2022Updated 4 years ago
- Collection of notes and scripts I used during my OSCP exam preparation.☆44Dec 21, 2025Updated 6 months ago
- DEFCON 33 Workshop - Open Source Malware 101 - Everything you always wanted to know about npm malware (and more)☆16Aug 8, 2025Updated 10 months ago
- Displays simulated agent data on an interactable dashboard, including radar, data tables and more.☆11Mar 29, 2026Updated 3 months ago
- Auxiliary scripts for Incident Response with ELK☆11Oct 7, 2015Updated 10 years ago
- Command-line tool to search for malware samples in various repositories☆13Mar 3, 2022Updated 4 years ago
- Made VRChat Avatar creation and testing easier☆10Apr 24, 2026Updated 2 months ago
- Volatility memory forensics plugin for extracting Windows DNS Cache☆29Mar 13, 2017Updated 9 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A homebrewed cyber threat intelligence solution☆20Nov 20, 2012Updated 13 years ago
- Sneak is URL transfer tool based on Tor and Curl.☆13Dec 6, 2018Updated 7 years ago
- ☆12Mar 21, 2020Updated 6 years ago
- pfSense Configuration Auditing Script☆13Dec 14, 2020Updated 5 years ago
- SOC Analyst Level 1 Replacement using RAG LLM☆28Aug 16, 2024Updated last year
- Conduct forensic investigation of suspicious domains, websites and other dangerous thing without the fear of being infected! A Live opera…☆18Jun 27, 2022Updated 4 years ago
- A guide to help you start with StarLoco☆14Jan 14, 2025Updated last year
- CLI generator for Velociraptor offline collector☆16Jun 2, 2026Updated 3 weeks ago
- StratoWeave Orchestration Platform☆23Updated this week
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Windows Syslog Command Line Client☆16Nov 21, 2012Updated 13 years ago
- DFIRLab / Plateforme d'investigation numérique☆15Jul 6, 2021Updated 4 years ago
- 2021 iThome 鐵人賽☆53Oct 13, 2025Updated 8 months ago
- Twitter API 2.0を使ってツイート(ポスト)する☆16Jul 5, 2025Updated 11 months ago
- 新楓之谷 ARC / AUT 計算機☆17Dec 27, 2023Updated 2 years ago
- VMware vCenter 未授权RCE(CVE-2021-21972)☆28Feb 25, 2021Updated 5 years ago
- Volatility, on Docker 🐳☆41Nov 20, 2025Updated 7 months ago