nesfit / NetfoxDetective
Network Forensic Extendable Analysis Tool
☆38Updated 2 years ago
Alternatives and similar repositories for NetfoxDetective:
Users that are interested in NetfoxDetective are comparing it to the libraries listed below
- ☆38Updated 4 years ago
- Threat intelligence and threat detection indicators (IOC, IOA)☆53Updated 4 years ago
- Repository for scripts and tips for "Yara Scan Service"☆20Updated last year
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated last year
- Fast incident overview☆39Updated 7 years ago
- PowerSponse is a PowerShell module focused on targeted containment and remediation during incident response.☆38Updated 2 years ago
- This repository contains all the config files and scripts used for our Open Source Endpoint monitoring project.☆34Updated 5 years ago
- Automated forensics written in PowerShell☆34Updated 5 years ago
- Simple Powershell scripts to collect all Windows Event Logs from a host and parse them into one CSV timeline.☆33Updated 6 years ago
- OSSEC Decoder & Rulesets for Sysmon Events☆15Updated 9 years ago
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 3 years ago
- The "DFUR" Splunk application and data that was presented at the 2020 SANS DFIR Summit.☆12Updated 4 years ago
- Winterfell is a group of windows batch scripts to collect Windows forensics data and perform efficient, and fast incident response and th…☆52Updated 4 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- PowerShell Memory Pulling script☆19Updated 9 years ago
- Information about the open-source-dfir slack community☆28Updated last year
- Incident Response Network Tools☆24Updated 3 years ago
- Indicator of Compromise Scanner for CVE-2019-19781☆92Updated 4 years ago
- Use DNS to hunt for threats including DGAs☆14Updated 9 years ago
- Git for me to put all my forensics stuff☆21Updated this week
- Notebooks created to attack and secure Active Directory environments☆27Updated 5 years ago
- OSSEM Modular☆27Updated 4 years ago
- ☆12Updated 5 years ago
- Validates yara rules and tries to repair the broken ones.☆39Updated 4 years ago
- ☆31Updated last month
- A script to assist in processing forensic RAM captures for malware triage☆27Updated 3 years ago
- Cisco AMP threat hunting scripts☆14Updated 2 months ago
- Accompanying PowerShell Modules for DevSec Defense Presentation☆28Updated 6 years ago