☆17Jan 21, 2026Updated last month
Alternatives and similar repositories for presentations
Users that are interested in presentations are comparing it to the libraries listed below
Sorting:
- Repo with supporting material for the talk titled "Cracking the Beacon: Automating the extraction of implant configurations"☆11Feb 6, 2025Updated last year
- Jupyter notebooks for threat hunting☆60Mar 26, 2025Updated 11 months ago
- Powershell sandboxing utility☆20Feb 2, 2026Updated last month
- ☆24Aug 30, 2019Updated 6 years ago
- ☆22Nov 22, 2025Updated 3 months ago
- Digital Forensics and Incident Response notes and Autopsy tool walkthrough☆11Feb 3, 2022Updated 4 years ago
- Grepify the GUI Regex Text Scanner for Code Reviewers☆23Apr 15, 2013Updated 12 years ago
- Xavier Framework is a user interface wrapper built on top of the Volatility(c) memory forensics framework.☆46Jul 7, 2022Updated 3 years ago
- Rolling Timeline for Incident Recorder.☆14Dec 4, 2023Updated 2 years ago
- ☆13Jan 19, 2023Updated 3 years ago
- Mine patterns from logs☆27Dec 12, 2016Updated 9 years ago
- Vagrant Files to create a Virtualbox VM for Malware Analysis☆13Jun 1, 2021Updated 4 years ago
- A pure PowerShell/ .NET DFIR capability that dumps the Windows SRUM (System Resource Usage Monitor) database to CSVs for analysis.☆14Oct 21, 2021Updated 4 years ago
- The "DFUR" Splunk application and data that was presented at the 2020 SANS DFIR Summit.☆13Sep 9, 2020Updated 5 years ago
- Get-MiniTimeline - Triage Collection and Timeline Generation w/ KAPE☆33May 25, 2024Updated last year
- ☆14Jun 7, 2023Updated 2 years ago
- Supporting resources and documentation for FLARE @ Google Summer of Code 2023☆16Feb 7, 2023Updated 3 years ago
- Defeating Anti-Debugging Techniques for Malware Analysis☆12Oct 1, 2022Updated 3 years ago
- ☆19Jul 29, 2022Updated 3 years ago
- Full of public notes and Utilities☆131Jan 6, 2026Updated last month
- Generic MSP scripts that aren't specific to an RMM.☆22Jul 17, 2025Updated 7 months ago
- ☆41May 22, 2024Updated last year
- Enter the domain name once and gather information about it with 33 tools☆49Sep 7, 2023Updated 2 years ago
- ☆18Apr 16, 2015Updated 10 years ago
- ☆62Oct 12, 2024Updated last year
- $MFT Record Viewer☆24Nov 9, 2022Updated 3 years ago
- Linux Baseline and Forensic Triage Tool - BETA☆57Sep 8, 2022Updated 3 years ago
- AWS EKS Cluster Forensics☆23Aug 16, 2021Updated 4 years ago
- Extract BITS jobs from QMGR queue and store them as CSV records☆74Feb 13, 2025Updated last year
- "Fuzzy matching" for SQLite databases☆30Jun 30, 2020Updated 5 years ago
- ☆154Dec 6, 2018Updated 7 years ago
- Browse Windows Prefetch versions: 17,23,26,30v1/2,31 & some of SuperFetch .7db/.db's☆64Dec 18, 2024Updated last year
- ☆61Jun 24, 2023Updated 2 years ago
- Publicly shareable windows event log message data☆28Nov 29, 2019Updated 6 years ago
- A triage data collection script for macOS☆29Nov 27, 2020Updated 5 years ago
- ☆29Nov 13, 2020Updated 5 years ago
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆68Sep 13, 2023Updated 2 years ago
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆36Jul 11, 2023Updated 2 years ago
- ☆33Dec 4, 2022Updated 3 years ago