tap-ir / tapir
TAPIR is a multi-user, client/server, incident response framework
☆45Updated 2 years ago
Alternatives and similar repositories for tapir:
Users that are interested in tapir are comparing it to the libraries listed below
- ☆85Updated 11 months ago
- Hunt malware with Volatility☆47Updated 8 months ago
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆72Updated 2 years ago
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆50Updated 9 months ago
- SkillAegis is a platform to design, run, and monitor exercise scenarios, enhancing skills in applications like MISP and training users in…☆22Updated last month
- YARA rule analyzer to improve rule quality and performance☆95Updated 3 weeks ago
- An experimental script to perform bulk parsing of arbitrary file features with YARA and console logging.☆21Updated 2 years ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆73Updated last year
- Logbook for Digital Forensics and Incident Response☆50Updated 6 months ago
- CSIRT Jump Bag☆27Updated 8 months ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 3 years ago
- Python based CLI for MalwareBazaar☆36Updated 2 months ago
- A home for detection content developed by the delivr.to team☆63Updated last month
- Initial triage of Windows Event logs☆93Updated 7 months ago
- Digital Forensics Artifacts Knowledge Base☆76Updated 8 months ago
- Automatic detection engineering technical state compliance☆53Updated 6 months ago
- The core backend server handling API requests and task management☆33Updated 2 weeks ago
- Rules Shared by the Community from 100 Days of YARA 2023☆77Updated last year
- A series of PowerShell scripts to automate collection of forensic artefacts in most Incident Response environments☆64Updated 2 years ago
- Automagically extract forensic timeline from volatile memory dump☆124Updated 8 months ago
- Azure function to insert MISP data in to Azure Sentinel☆31Updated 2 years ago
- A sample VHDX file with multiple verbose examples of forensic and anti-forensics artifacts. Meant to be basic and can be expanded upon. P…☆25Updated 2 years ago
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆32Updated last month
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 3 years ago
- Scripts to integrate DFIR-IRIS, MISP and TimeSketch☆32Updated 2 years ago
- A PowerShell incident response script for quick triage☆78Updated 2 years ago
- Collection of scripts provided for public use☆34Updated 2 months ago
- Memory Baseliner is a script that can compare two windows memory images or perform frequency of occurrence / data stacking analysis on mu…☆50Updated last year