google / docker-explorerLinks
A tool to help forensicate offline docker acquisitions
☆551Updated last year
Alternatives and similar repositories for docker-explorer
Users that are interested in docker-explorer are comparing it to the libraries listed below
Sorting:
- (DEPRECATED) Diffy is a triage tool used during cloud-centric security incidents, to help digital forensics and incident response (DFIR)…☆631Updated 2 years ago
- Python library to carry out DFIR analysis on the Cloud☆497Updated 3 months ago
- Remote Memory Acquisition Tool☆252Updated 5 years ago
- A production-friendly malware scanner for your AWS cloud☆200Updated 4 years ago
- A repository for using osquery for incident detection and response☆880Updated 4 months ago
- Python installable command line utiltity for mitigation of host and key compromises.☆347Updated 4 years ago
- an osquery fleet manager☆620Updated 3 years ago
- Automation and Scaling of Digital Forensics Tools☆780Updated 3 weeks ago
- osquery extensions by Trail of Bits☆269Updated 2 years ago
- A Terraform module for GRR: the distributed incident forensics and response framework☆52Updated 5 years ago
- A Linux Auditd rule set mapped to MITRE's Attack Framework☆824Updated 5 years ago
- Real-time, container-based file scanning at enterprise scale☆973Updated 3 weeks ago
- Volatile Artifact Collector collects a snapshot of volatile data from a system. It tells you what is happening on a system, and is of par…☆253Updated last year
- A framework for orchestrating forensic collection, processing and data export☆338Updated last week
- Osquery Resources☆63Updated 6 years ago
- Chain Reactor is an open source framework for composing executables that simulate adversary behaviors and techniques on Linux endpoints.☆330Updated 9 months ago
- HASSH is a network fingerprinting standard which can be used to identify specific Client and Server SSH implementations. The fingerprints…☆545Updated 9 months ago
- ☆230Updated 9 months ago
- Script for automating Linux memory capture and analysis☆274Updated 6 years ago
- Production-ready detection & response queries for osquery☆599Updated 5 months ago
- ChaoSlingr: Introducing Security into Chaos Testing☆69Updated 6 years ago
- Fast and efficient osquery management☆486Updated last month
- Yet Another Yara Automaton - Automatically curate open source yara rules and run scans☆301Updated 2 years ago
- 1-Click push forensics evidence to the cloud☆144Updated 4 months ago
- Extension to Cuckoo Sandbox open source projects, adds support to AWS cloud functionalities and enables running emulation on auto-scaling…☆135Updated 3 years ago
- Documentation of Cortex☆174Updated 2 years ago
- Google Cloud Platform Security Tool☆235Updated 6 years ago
- DFIRTrack - The Incident Response Tracking Application☆532Updated 3 weeks ago
- Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux☆504Updated 3 years ago
- Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing☆177Updated 4 years ago