google / grrLinks
GRR Rapid Response: remote live forensics for incident response
☆4,996Updated 5 months ago
Alternatives and similar repositories for grr
Users that are interested in grr are comparing it to the libraries listed below
Sorting:
- Rekall Memory Forensic Framework☆1,985Updated 5 years ago
- DEPRECATED - MozDef: Mozilla Enterprise Defense Platform☆2,172Updated 4 years ago
- Security Onion 16.04 - Linux distro for threat hunting, enterprise security monitoring, and log management☆3,102Updated 4 years ago
- Cuckoo Sandbox is an automated dynamic malware analysis system☆5,848Updated 3 years ago
- Collaborative forensic timeline analysis☆3,203Updated this week
- Arkime is an open source, large scale, full packet capturing, indexing, and database system.☆7,193Updated this week
- OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, roo…☆4,917Updated 9 months ago
- Modern Honey Network☆2,465Updated 11 months ago
- Loki - Simple IOC and YARA Scanner☆3,678Updated 3 weeks ago
- The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file s…☆2,920Updated last week
- Fast Incident Response☆1,954Updated 3 weeks ago
- Super timeline all the things☆1,957Updated 3 weeks ago
- MISP (core software) - Open Source Threat Intelligence and Sharing Platform☆6,000Updated last week
- TheHive: a Scalable, Open Source and Free Security Incident Response Platform☆3,855Updated 3 months ago
- Distributed & real time digital forensics at the speed of the cloud☆1,204Updated 6 years ago
- A network sniffer that logs all DNS server replies for use in a passive DNS setup☆1,729Updated last year
- A forensic evidence collection & analysis toolkit for OS X☆1,889Updated 6 years ago
- Repository of yara rules☆4,580Updated last year
- The pattern matching swiss knife☆9,204Updated last week
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆2,509Updated last year
- Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.☆7,237Updated this week
- The Hunting ELK☆3,897Updated last year
- Your Everyday Threat Intelligence☆1,929Updated 2 weeks ago
- OS X Auditor is a free Mac OS X computer forensics tool☆3,132Updated 5 years ago
- A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more e…☆4,393Updated last year
- Digging Deeper....☆3,580Updated this week
- Investigate malicious Windows logon by visualizing and analyzing Windows event log☆3,009Updated last month
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs an…☆2,271Updated 2 weeks ago
- Binary analysis and management framework☆1,552Updated 2 years ago
- Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.☆1,332Updated 2 years ago