w8mej / IRKnowledge
A curated list of tools for incident response
☆27Updated 8 months ago
Related projects ⓘ
Alternatives and complementary repositories for IRKnowledge
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆40Updated 4 years ago
- This is a copy of the Registry Decoder Live repository from Google Code☆9Updated 9 years ago
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 7 years ago
- GUI Tool to generate threat intelligence information in various formats☆43Updated 6 years ago
- Discover potential timestamps within the Windows Registry☆18Updated 10 years ago
- My personal Automated Malware Analysis Sandboxes and Services☆22Updated 7 years ago
- Volatility Plugin to scan for shimmed processes in Windows☆10Updated 9 years ago
- Tools to work with vulnerability standards.☆19Updated 10 years ago
- Carves EXEs from given data files, using intelligent carving based upon PE headers☆36Updated 7 years ago
- Linux and Windows Hardening Points☆12Updated 6 years ago
- Extracts indicators of compromise (IOCs), including domain names, IPv4 addresses, email addresses, and hashes, from text.☆13Updated 6 years ago
- Recon-ng modules that won't get accepted into the main distribution because of 3rd party dependencies.☆18Updated 10 years ago
- Threat Intel and Incident Reponse☆10Updated 6 years ago
- An active domain name query tool to help keep track of domain name movements...☆15Updated 3 years ago
- Reddit domain search module for Recon-ng☆10Updated 7 years ago
- Working through Practical Malware Analysis from No Starch Press☆13Updated 7 years ago
- Carve Windows Prefetch files from arbitrary binary data☆14Updated 7 years ago
- CertWatcher is a new take on monitoring for phishing sites. It is meant to be a set and forget service that will send you a daily report …☆11Updated 4 years ago
- Collection of single use scripts I worte for windows forensics☆27Updated 12 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 4 years ago
- Force-Directed Graph Generator for Volatility Ouputs☆26Updated 5 years ago
- A Single Library Parser to extract meta information,static analysis and detect macros within the files.☆1Updated 6 years ago
- Listen for usb devices and automatically submit all files on device to cuckoo☆12Updated 7 years ago