Statistics for topic dfir
RepositoryStats tracks 643,864 Github repositories, of these 189 are tagged with the dfir topic. The most common primary language for repositories using this topic is Python (66). Other languages include: PowerShell (27)
Stargazers over time for topic dfir
Most starred repositories for topic dfir (view more)
Trending repositories for topic dfir (view more)
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
A curated list of tools for incident response
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
Automate the creation of a lab environment complete with security tooling and logging best practices
Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.
Provides various Windows Server Active Directory (AD) security-focused reports.
Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
A curated list of tools for incident response
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.
Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database Forensics.
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.
A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.
KQL Queries. Microsoft Defender, Microsoft Sentinel
A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.
LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. This project gathers procedural examples from public reports of ...
FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (EXT4, XFS) journals (not systemd-journald), generates timelines, and detects suspicious activities.
A curated list of tools for incident response
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
PowerShell script designed to help Incident Responders collect forensic evidence from local and remote Windows devices.
LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. This project gathers procedural examples from public reports of ...