Incident Response automation scripts
☆16Sep 5, 2025Updated 7 months ago
Alternatives and similar repositories for ir-automation
Users that are interested in ir-automation are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A console tool for inspecting Windows Ancillary Function Driver sockets☆21May 15, 2025Updated 11 months ago
- Understanding the operation and limitations of Sysmon's events☆24Sep 15, 2022Updated 3 years ago
- Source code and examples for PassiveAggression☆64Jun 6, 2024Updated last year
- Source code and examples for Antignis☆44Oct 21, 2022Updated 3 years ago
- Tools and technical write-ups describing attacking techniques that rely on concealing code execution on Windows☆222Aug 12, 2022Updated 3 years ago
- Wordpress hosting with auto-scaling - Free Trial • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- CLI generator for Velociraptor offline collector☆16Mar 6, 2026Updated last month
- Perform file-based malware scan on your on-prem servers with AWS☆14Oct 31, 2023Updated 2 years ago
- A cargo subcommand to build Rust with docker☆19Aug 24, 2017Updated 8 years ago
- ☆23Jun 1, 2023Updated 2 years ago
- The Definitive Guide To Process Cloning on Windows☆543Jan 3, 2024Updated 2 years ago
- Scripts to integrate DFIR-IRIS, MISP and TimeSketch☆36Feb 2, 2022Updated 4 years ago
- Repo hacks☆21Dec 7, 2025Updated 4 months ago
- A Python implementation of our efficient Bloom filter library.☆29Feb 27, 2020Updated 6 years ago
- RuleVis is a powerful analysis tool that transforms your Wazuh ruleset into a dynamic, interactive force-directed graph. It helps you vis…☆25Nov 12, 2025Updated 5 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Tools for Incident Response and Malware Analysis☆11Feb 9, 2025Updated last year
- Fast lookup server for NSRL and other hash database used in digital forensic☆49Jan 26, 2026Updated 2 months ago
- a mirror of masterMind fromr Uncle Bob( Robert C. Martin)☆23Apr 28, 2015Updated 10 years ago
- NDISPktScan is a plugin for the Volatility Framework. It parses the Ethernet packets stored by ndis.sys in Windows kernel space memory.☆12Oct 23, 2015Updated 10 years ago
- Offline amnesic live Linux distribution☆14Mar 8, 2025Updated last year
- ☆39Updated this week
- look or google 10000 english for (neo)vim☆27Jun 28, 2023Updated 2 years ago
- The Art of Pivoting - Techniques for Intelligence Analysts to Discover New Relationships in a Complex World☆167Apr 11, 2026Updated last week
- Hunt the windows Registry automatically using VQL☆15Jan 6, 2026Updated 3 months ago
- Serverless GPU API endpoints on Runpod - Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- A specialized implementation of the Hierarchical Navigable Small World (HNSW) data structure adapted for efficient nearest neighbor looku…☆12Updated this week
- Manage and maintain Defender XDR custom collection configuration☆35Nov 19, 2025Updated 4 months ago
- CLI Search for Security Operators of MITRE ATT&CK URLs☆17Jan 5, 2023Updated 3 years ago
- F-Secure Lightweight Acqusition for Incident Response (FLAIR)☆16Jul 5, 2021Updated 4 years ago
- VANET using OMNET++, SUMO, Open Street Map, Veins, Inet☆11May 14, 2024Updated last year
- You’ve hardened your servers, locked down your website and are ready to take on the internet. But all your hard work was in vain, because…☆15Mar 6, 2017Updated 9 years ago
- An patch porting qwingraph (wingraph written in qt4) to qt5.☆10Aug 21, 2019Updated 6 years ago
- Repo to hold mcp server for velociraptor☆36Jul 27, 2025Updated 8 months ago
- ☆11Apr 7, 2022Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Visualize Microsoft Defender XDR process trees and security events☆33Aug 24, 2025Updated 7 months ago
- Script examples - Bash, PowerShell, etc.☆16Jan 1, 2025Updated last year
- ☆22Jan 31, 2023Updated 3 years ago
- DEFCON 33 Workshop - Open Source Malware 101 - Everything you always wanted to know about npm malware (and more)☆16Aug 8, 2025Updated 8 months ago
- Read Registry.pol files on Linux, or anywhere Python runs!☆17Jun 12, 2023Updated 2 years ago
- Takes in scan reports from the GVM PostgreSQL Database and dump into Elasticsearch☆14Aug 18, 2023Updated 2 years ago
- Auxiliary scripts for Incident Response with ELK☆11Oct 7, 2015Updated 10 years ago