theflakes / Linux_Forensic_HarvesterLinks
Harvest Linux forensic data for operational triage of an event.
☆52Updated last month
Alternatives and similar repositories for Linux_Forensic_Harvester
Users that are interested in Linux_Forensic_Harvester are comparing it to the libraries listed below
Sorting:
- Blueteam operational triage registry hunting/forensic tool.☆150Updated 4 months ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆66Updated 3 years ago
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆32Updated last month
- Rip Raw is a small tool to analyse the memory of compromised Linux systems.☆133Updated 3 years ago
- Penguin OS Forensic (or Flight) Recorder☆41Updated last year
- ☆92Updated 5 months ago
- ReWrite of AChoir in Go for Cross Platform forensic artifact collection and processing☆42Updated last week
- Digital Forensics Artifacts Knowledge Base☆88Updated 2 weeks ago
- TAPIR is a multi-user, client/server, incident response framework☆47Updated 3 years ago
- Library of threat hunts to get any user started!☆45Updated 5 years ago
- Scripts to integrate DFIR-IRIS, MISP and TimeSketch☆34Updated 3 years ago
- A collection of tips for using MISP.☆75Updated last year
- Public tools, scripts or code snippets that can help when working with our products☆46Updated 8 months ago
- A MITRE ATT&CK Lookup Tool☆46Updated last year
- A toolkit for the post-mortem examination of Docker containers from forensic HDD copies☆106Updated last year
- Incident response teams usually working on the offline data, collecting the evidence, then analyze the data☆45Updated 4 years ago
- THOR Thunderstorm Collectors☆25Updated this week
- Invoke-Forensics provides PowerShell commands to simplify working with the forensic tools KAPE and RegRipper.☆116Updated 2 years ago
- Jupyter Notebooks for Cyber Threat Intelligence☆35Updated 2 years ago
- ☆70Updated 4 years ago
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆128Updated 2 years ago
- Rhaegal is a tool written in Python 3 used to scan Windows Event Logs for suspicious logs. Rhaegal uses custom rule format to detect sus…☆42Updated 2 years ago
- Forensic Artifact Collection Tool Matrix☆92Updated last year
- TheHiveIRPlaybook is a collection of TheHive case templates used for Incident Response☆13Updated 5 years ago
- A sample VHDX file with multiple verbose examples of forensic and anti-forensics artifacts. Meant to be basic and can be expanded upon. P…☆27Updated 3 years ago
- A series of PowerShell scripts to automate collection of forensic artefacts in most Incident Response environments☆65Updated 3 years ago
- Automagically extract forensic timeline from volatile memory dump☆131Updated last year
- ☆29Updated last year
- ☆38Updated 4 years ago
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆32Updated 3 years ago