☆54May 14, 2024Updated 2 years ago
Alternatives and similar repositories for velocistack
Users that are interested in velocistack are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Python client for DFIR-IRIS☆26Aug 19, 2024Updated last year
- ☆15Oct 24, 2024Updated last year
- Sigma rules converted for direct use with Zircolite☆15Updated this week
- A repository to share publicly available Velociraptor detection content☆203Updated this week
- ESXi Cyber Security Incident Response Script☆28Sep 4, 2024Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Bring Your Own Mitre Att&ck © Matrix !☆13Oct 19, 2023Updated 2 years ago
- Hunt the windows Registry automatically using VQL☆17May 4, 2026Updated last month
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆32May 21, 2026Updated 3 weeks ago
- Invoke-Forensics provides PowerShell commands to simplify working with the forensic tools KAPE and RegRipper.☆118Nov 28, 2023Updated 2 years ago
- An experimental Velociraptor implementation using cloud infrastructure☆26Dec 2, 2025Updated 6 months ago
- Thor Artifacts for Velociraptor☆19Dec 2, 2025Updated 6 months ago
- Sigma detection rules for hunting with the threathunting-keywords project☆60Mar 2, 2025Updated last year
- ☆17Mar 31, 2026Updated 2 months ago
- A collection of Terraform and Ansible scripts that automatically (and quickly) deploys a small Velociraptor R&D lab.☆22Apr 16, 2021Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Linux Baseline and Forensic Triage Tool - BETA☆60Mar 10, 2026Updated 3 months ago
- A command-line tool and Python library for parsing Windows Master File Table ($MFT) and importing the results into Elasticsearch.☆13Jun 3, 2026Updated last week
- ☆12Mar 28, 2026Updated 2 months ago
- ☆23Mar 12, 2025Updated last year
- ☆17Aug 27, 2022Updated 3 years ago
- ☆18Jan 18, 2022Updated 4 years ago
- Documentation and scripts to properly enable Windows event logs.☆706Oct 3, 2025Updated 8 months ago
- Incident Response documents and tooling☆116Dec 23, 2025Updated 5 months ago
- ☆21May 28, 2026Updated 2 weeks ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs☆822May 30, 2026Updated 2 weeks ago
- A script to collect (the most famous) Yara rules from more than 150 free resources. Free alternative to: https://valhalla.nextron-system…☆28Aug 26, 2023Updated 2 years ago
- ⚡️ Catalyst is a self-hosted, open source incident response platform and ticket system that helps to automate alert handling and incident…☆530Jun 2, 2026Updated last week
- A curated list of resources for DFIR through Microsoft Defender for Endpoint leveraging kusto queries, powershell scripts, tools such as …☆470Feb 18, 2026Updated 3 months ago
- Threat-Surface helps with daily tracking of exposed servers, open ports, and infrastructure used by threat actors.☆57May 12, 2026Updated last month
- Docker Container to deploy Mitre Caldera Automated Adversary Emulation System☆26Sep 26, 2020Updated 5 years ago
- Knowing which rule should trigger according to the redcannary test☆11Nov 23, 2024Updated last year
- DFIRLab / Plateforme d'investigation numérique☆15Jul 6, 2021Updated 4 years ago
- Collection of Remote Management Monitoring tool artifacts, for assisting forensics and investigations☆103Aug 15, 2025Updated 10 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A preconfigured Velociraptor triage collector☆77Jun 4, 2026Updated last week
- A list of RMMs designed to be used in automation to build alerts☆119Nov 9, 2025Updated 7 months ago
- Presentations from Conferences☆31Sep 14, 2024Updated last year
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆14Feb 1, 2022Updated 4 years ago
- Cumulonimbus-UAL_Extractor is a PowerShell based tool created by the Tesorion CERT team to help gather the Unified Audit Logging out of a…☆21Oct 25, 2023Updated 2 years ago
- Collection of scripts/resources/ideas for attack surface reduction and additional logging to enable better threat hunting on Windows endp…☆38Apr 5, 2024Updated 2 years ago
- Event Tracing For Windows (ETW) Resources☆430Oct 30, 2025Updated 7 months ago