telekom-security / acquire-aws-ec2
A python script to acquire multiple aws ec2 instances in a forensically sound-ish way
☆37Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for acquire-aws-ec2
- OpenIOC rules to facilitate hunting for indicators of compromise☆38Updated 2 years ago
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆31Updated 3 weeks ago
- Threat intelligence and threat detection indicators (IOC, IOA)☆53Updated 3 years ago
- A MITRE ATT&CK Lookup Tool☆43Updated 6 months ago
- Windows Security Logging☆43Updated 2 years ago
- Automatic detection engineering technical state compliance☆50Updated 4 months ago
- Track progress and keep notes while working through likethecoins' CTI Self Study Plan☆28Updated 2 years ago
- CSIRT Jump Bag☆27Updated 6 months ago
- ☆15Updated 2 years ago
- A happy place for detection engineers, purple teamers and threat hunters focusing on macOS.☆20Updated 2 years ago
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 3 years ago
- A quick reference guide for python script development in DFIR☆16Updated 8 months ago
- DNS Dashboard for hunting and identifying beaconing☆14Updated 4 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆62Updated 2 years ago
- Send High & New Incidents to The Hive incident management Platform☆17Updated 3 years ago
- Columbo is a computer forensic analysis tool used to simplify and identify specific patterns in compromised datasets.☆61Updated 3 years ago
- The Intelligent Process Lifecycle of Active Cyber Defenders☆31Updated last year
- CyCAT.org API back-end server including crawlers☆30Updated last year
- Penguin OS Forensic (or Flight) Recorder☆37Updated 4 months ago
- ☆27Updated this week
- Simple PowerShell script to enable process scanning with Yara.☆90Updated 2 years ago
- C# User Simulation☆33Updated 2 years ago
- Logbook for Digital Forensics and Incident Response☆49Updated 4 months ago
- Winterfell hunt is a python script to perform auto threat hunting for malicious activities in windows OS based on collected data by winte…☆14Updated 4 years ago
- ☆43Updated last year
- Small-scale threat emulation and detection range built on Elastic and Atomic Redteam.☆35Updated 11 months ago
- Supporting materials for my "Intelligence-Led Adversarial Threat Modelling with VECTR" workshop☆56Updated last week
- Site for IWS book content☆18Updated 6 years ago
- ShellSweeping the evil.☆52Updated 5 months ago