kk0m4k / docker-forensics
☆23Updated 5 years ago
Alternatives and similar repositories for docker-forensics:
Users that are interested in docker-forensics are comparing it to the libraries listed below
- Sandbox feature upgrade with the help of wrapped samples☆76Updated 6 years ago
- Shows command lines used by latest instances analyzed on Hybrid-Analysis☆43Updated 6 years ago
- Projects for AWS ThreatHunting☆21Updated 3 years ago
- Tools for parsing Forensic images☆41Updated 6 years ago
- ☆50Updated 6 years ago
- Powershell collection designed to assist in Threat Hunting Windows systems.☆27Updated 6 years ago
- No-Script Automation Tool☆56Updated 6 years ago
- Python tool and library to help analyze files during malware triage and analysis.☆78Updated 4 years ago
- OSSEM Modular☆27Updated 4 years ago
- Parsing MITRE EDR Evaluation results☆12Updated 6 years ago
- Fast incident overview☆39Updated 8 years ago
- Three datasets to practice Threat Hunting against.☆43Updated last year
- PowerGRR is an API client library in PowerShell working on Windows, Linux and macOS for GRR automation and scripting.☆56Updated 3 years ago
- Presentation materials for talks I've given.☆20Updated 5 years ago
- Repository with Sample threat hunting notebooks on Security Event Log Data Sources☆63Updated 2 years ago
- Automated Memory Forensic☆35Updated 6 years ago
- A DFVFS Backed Forensic Viewer☆40Updated 4 years ago
- The new name is DeTT&CT☆24Updated 5 years ago
- SuperPeHasher is a wrapper for several hash algorithms dedicated to PE file.☆27Updated 3 years ago
- A collection of infosec related scripts and information.☆53Updated 5 months ago
- YARA Rule Strings Statistics Calculator and Malware Research Helper☆13Updated 3 years ago
- Mitre Att&ck Technique Emulation☆82Updated 6 years ago
- SilkETW & SilkService☆40Updated 5 years ago
- Carbon Black Response IR tool☆53Updated 4 years ago
- Repository for my ATT&CK analysis research.☆69Updated 5 years ago
- hopefully a source-to-source deobfuscator, aiming at deobfuscating common scripts languages such as Powershell, VBA and Javascript. Curre…☆40Updated 5 years ago
- Create an incident response triage toolkit for use with Windows or Linux.☆17Updated 4 years ago
- Theat hunting notes in flat file format and mapped to MITRE's ATT&CK IDs☆42Updated 6 years ago
- Slides and Other Resources from my latest Talks and Presentations☆24Updated 4 years ago
- An Incident Response tool that visualizes historic process execution evidence (based on Event ID 4688 - Process Creation Event) in a tree…☆60Updated 7 years ago