rcobb76101 / bulk_volatility_scannerLinks
Python script to run battery of Volatility plugins against a forensic memory image
☆10Updated 6 years ago
Alternatives and similar repositories for bulk_volatility_scanner
Users that are interested in bulk_volatility_scanner are comparing it to the libraries listed below
Sorting:
- BlueSploit is a DFIR framework with the main purpose being to quickly capture artifacts for later review.☆32Updated 6 years ago
- Indicator of Compromise Scanner for CVE-2019-19781☆94Updated 5 years ago
- Defcon 28 - Red Team Village - Applied Purple Teaming - Why Can't We Be Friends☆26Updated 5 years ago
- Quick & Dirty DFIR scripts developed by Ebryx DFIR team to keep handy during field assignment☆14Updated last month
- ☆21Updated 4 years ago
- A script to assist in processing forensic RAM captures for malware triage☆26Updated 5 years ago
- Powershell / C# based cross platform forensic framework based for live incident response☆23Updated 5 years ago
- A MITRE ATT&CK Lookup Tool☆46Updated last year
- Rhaegal is a tool written in Python 3 used to scan Windows Event Logs for suspicious logs. Rhaegal uses custom rule format to detect sus…☆42Updated 2 years ago
- ☆46Updated 2 years ago
- Carbon Black Response IR tool☆55Updated 5 years ago
- Cont3xt intends to centralize and simplify a structured approach to gathering contextual intelligence in support of technical investigati…☆38Updated last year
- THOR MITRE ATT&CK Framework Coverage☆25Updated 5 years ago
- Repo of python/bash scripts for identifying IoC's in threat feed and other online tools☆26Updated 5 years ago
- ☆30Updated 7 years ago
- CyberChef update scripts in PowerShell & Bash☆17Updated last year
- A simple ReST server to lookup threat actors (by name, synonym or UUID) and returning the corresponding MISP galaxy information about the…☆50Updated 5 months ago
- ThreatBox is a standard and controlled Linux based attack platform. I've used a version of this for years. It started as a collection of …☆76Updated last year
- Audit Powershell and search from known keywords in history #Blueteam☆25Updated 5 years ago
- A tool to assess data quality, built on top of the awesome OSSEM.☆80Updated 3 years ago
- Gunslinger is used to hunt for Magecart sites using URLScan's API☆31Updated 3 years ago
- Columbo is a computer forensic analysis tool used to simplify and identify specific patterns in compromised datasets.☆61Updated 4 years ago
- Collection of walkthroughs on various threat hunting techniques☆76Updated 5 years ago
- Tool for quickly gathering information from Shodan.io about the number of IPs which satisfy large number of different queries☆52Updated 3 years ago
- Site for IWS book content☆17Updated 7 years ago
- A list of IOCs applicable to PoshC2☆24Updated 5 years ago
- Log aggregation, analysis, alerting and correlation for Windows, Syslog and text based logs.☆23Updated 9 years ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆75Updated 4 years ago
- Windows Security Logging☆43Updated 3 years ago
- Attempt to replicate the functions of auto_rip by Corey Harrell in Python.☆12Updated last year