w8mej / IRKnowledgeLinks
A curated list of tools for incident response
☆31Updated last year
Alternatives and similar repositories for IRKnowledge
Users that are interested in IRKnowledge are comparing it to the libraries listed below
Sorting:
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 8 years ago
- My personal Automated Malware Analysis Sandboxes and Services☆24Updated 8 years ago
- Discover potential timestamps within the Windows Registry☆19Updated 11 years ago
- GUI Tool to generate threat intelligence information in various formats☆44Updated 7 years ago
- Collection of single use scripts I worte for windows forensics☆27Updated 13 years ago
- IDS Utility Belt For Automating/Testing Various Things☆30Updated 4 years ago
- A short and small memory forensics helper.☆52Updated 7 years ago
- Lite version of PDF X-RAY that uses no backend☆36Updated 13 years ago
- Searches for interesting cached DNS entries.☆55Updated 11 years ago
- Linux and Windows Hardening Points☆12Updated 7 years ago
- Digital Forensics and Incident Response Wiki☆40Updated 11 years ago
- Tool for analysts to perform simultaneous lookups (IP, Domain, URL, MD5) against multiple data sources☆29Updated 8 years ago
- An active domain name query tool to help keep track of domain name movements...☆15Updated 4 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 5 years ago
- This is a python version of samesame repo to generate homograph strings☆24Updated 7 years ago
- DNS Enumeration and Reconnaissance Tool☆36Updated 9 years ago
- Script to parse first load time for Shell Extensions loaded by user. Also enumerates all loaded Shell Extensions that are only installed …☆21Updated 10 years ago
- collection of useful shells for penetration tests☆37Updated 8 years ago
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Updated 7 years ago
- Script to parse Process Monitor XML log file, and give you a summary report.☆23Updated 9 years ago
- PowerShell scripts for Hard Drive forensics and parsing Windows Artifacts☆56Updated 4 years ago
- Set of PoC for exploits for QRadar SIEM☆15Updated 7 years ago
- Get detailed information about a Twitter user activity☆17Updated 7 years ago
- Network Forensics Workshop Files☆17Updated 10 years ago
- Server for receiving autorun data from the clients☆13Updated 8 years ago
- Based on the Volatility framework, this script will run various plugins as well as create a timeline, or use YARA/ClamAV/VirusTotal to fi…☆48Updated 8 years ago
- Hasher is designed to be a tool that allows you to quickly hash plaintext strings, or compare hashed values with a plaintext locally. Not…☆52Updated 3 years ago
- ☆16Updated 10 years ago
- Here comes the paintrain!☆11Updated 9 years ago
- Windows login backdoor diagnostic tool☆11Updated 8 years ago