Evolving directions on building the best Open Source Forensics VM
☆161Jul 5, 2018Updated 7 years ago
Alternatives and similar repositories for Ultimate-Forensics-VM
Users that are interested in Ultimate-Forensics-VM are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Feb 20, 2024Updated 2 years ago
- Configuration files for the SOF-ELK VM☆1,733Jan 21, 2026Updated 3 months ago
- Automating forensic data extraction, reduction, and overall triage of cold disk and memory images.☆21Mar 12, 2019Updated 7 years ago
- Security Onion 16.04 - Linux distro for threat hunting, enterprise security monitoring, and log management☆3,116Apr 16, 2021Updated 5 years ago
- incident response scripts☆18Mar 4, 2019Updated 7 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- ☆50Aug 30, 2020Updated 5 years ago
- Scripts to maintain Security Onion servers in an airgapped environment.☆10Mar 13, 2017Updated 9 years ago
- Security Onion Elastic Stack☆46Feb 1, 2021Updated 5 years ago
- Jupyter demo repository for PancakesCon2020☆16Mar 23, 2020Updated 6 years ago
- Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux☆506Oct 21, 2022Updated 3 years ago
- The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted driv…☆343Jun 25, 2022Updated 3 years ago
- Rekall is an endpoint security solution.☆38Feb 12, 2018Updated 8 years ago
- ☆142May 24, 2024Updated last year
- ☆36Dec 7, 2020Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆22Mar 16, 2020Updated 6 years ago
- Publicly shareable windows event log message data☆29Nov 29, 2019Updated 6 years ago
- Automation of VPC Traffic Mirror Sessions in AWS☆35Nov 15, 2025Updated 5 months ago
- ELK configuration files for Forensic Analysts and Incident Handlers (unmaintained)☆179Jul 10, 2019Updated 6 years ago
- This repo is for WMIOps, a powershell script which uses WMI for various purposes across a network.☆387Jun 25, 2024Updated last year
- Blueteam operational triage registry hunting/forensic tool.☆148Sep 2, 2025Updated 8 months ago
- Understanding ATT&CK Matrix for Enterprise☆80May 16, 2018Updated 7 years ago
- Some IR notes☆73Jul 23, 2016Updated 9 years ago
- Windows Live Artifacts Acquisition Script☆192Jun 20, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- CyLR - Live Response Collection Tool☆723Jun 1, 2022Updated 3 years ago
- Sources, configuration and how to detect evil things utilizing Microsoft Sysmon.☆940Dec 12, 2023Updated 2 years ago
- Collecting & Hunting for IOCs with gusto and style☆117Aug 9, 2018Updated 7 years ago
- ☆312Aug 14, 2020Updated 5 years ago
- Tools from WFA 4/e, timeline tools, etc.☆145Feb 29, 2024Updated 2 years ago
- Carve Windows Prefetch files from arbitrary binary data☆16Jun 11, 2017Updated 8 years ago
- Python web app for previewing data in a Chrome Profile Folder☆26Jul 1, 2024Updated last year
- Scripts and code referenced in CrowdStrike blog posts☆340Nov 13, 2019Updated 6 years ago
- Incident Response Forensic Framework☆612Nov 20, 2019Updated 6 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Small scripts and POCs related to digital forensics☆18Nov 1, 2022Updated 3 years ago
- brocon-15 scripts☆13Apr 3, 2017Updated 9 years ago
- Build a fast, free, and effective Threat Hunting/Incident Response Console with Windows Event Forwarding and PowerBI☆202Dec 11, 2017Updated 8 years ago
- A forensics tool to convert the data in the Windows srum (System Resource Usage Monitor) database to an xlsx spreadsheet.☆744Jun 5, 2025Updated 11 months ago
- Git for me to put all my forensics stuff☆23Sep 2, 2025Updated 8 months ago
- ☆454Nov 21, 2024Updated last year
- Fetching data from system☆11Jun 18, 2017Updated 8 years ago