#

dfir-automation

https://static.github-zh.com/github_avatars/clong?size=40

Automate the creation of a lab environment complete with security tooling and logging best practices

翻译Vagrant&Packer脚本可构建带有安全工具和记录最佳实践的完整实验室环境

HTML 4.73 k
9 个月前
https://static.github-zh.com/github_avatars/securityjoes?size=40
PowerShell 723
10 天前
https://static.github-zh.com/github_avatars/iknowjason?size=40

A little tool to play with Azure Identity - Azure and Entra ID lab creation tool. Blog: https://medium.com/@iknowjason/sentinel-for-purple-teaming-183b7df7a2f4

Python 564
25 天前
https://static.github-zh.com/github_avatars/cado-security?size=40

Volatile Artifact Collector collects a snapshot of volatile data from a system. It tells you what is happening on a system, and is of particular use when investigating a security incident.

Python 253
5 个月前
https://static.github-zh.com/github_avatars/jurelou?size=40
Python 235
3 个月前
https://static.github-zh.com/github_avatars/iknowjason?size=40

Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.

HTML 133
2 年前
https://static.github-zh.com/github_avatars/cado-security?size=40

Rip Raw is a small tool to analyse the memory of compromised Linux systems.

Python 130
3 年前
https://static.github-zh.com/github_avatars/hashlookup?size=40

Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https://circl.lu/services/hashlookup/

Python 126
2 年前
https://static.github-zh.com/github_avatars/adulau?size=40

Fast lookup server for NSRL and other hash database used in digital forensic

Python 43
3 年前
https://static.github-zh.com/github_avatars/op7ic?size=40

unix_collector is a Live Response collection script for Incident Response on UNIX-like systems using native binaries. Supports AIX, Android, ESXi, FreeBSD, Linux, macOS, NetBSD, NetScaler, OpenBSD and...

Shell 35
3 个月前
https://static.github-zh.com/github_avatars/QXJ6YW4?size=40

Simple Imager has been created for performing live acquisition of Windows based systems in a forensically sound manner

Batchfile 32
3 年前
https://static.github-zh.com/github_avatars/iknowjason?size=40

A collection of Terraform and Ansible scripts that automatically (and quickly) deploys a small Velociraptor R&D lab.

HCL 20
4 年前
https://static.github-zh.com/github_avatars/idiom?size=40
Python 17
4 年前
https://static.github-zh.com/github_avatars/RealityNet?size=40

Toolset to analyze disks encrypted with McAFee FDE technology

Python 17
4 年前
https://static.github-zh.com/github_avatars/brootware?size=40

Easy automated vagrant provisioning of Windows 10 with flarevm tools installed for Digital Forensics and Malware Analysis Lab.

HCL 16
3 年前
https://static.github-zh.com/github_avatars/jupyterj0nes?size=40

Sabonis, a Digital Forensics and Incident Response pivoting tool

Python 16
3 年前
https://static.github-zh.com/github_avatars/BenjiTrapp?size=40

Kali in a Box - Containerized and fully operational within your Browser

Shell 12
8 个月前
https://static.github-zh.com/github_avatars/wv8672?size=40

A Python, Boto3 script that leverages a forensic volume to attach & mount to a selected instance, run a memory dump, unmount and detach from the selected instance and finally attach & mount to a Foren...

Python 12
5 年前
https://static.github-zh.com/github_avatars/CIRCL?size=40

Factual rules are YARA rules to find legitimate software on raw disk acquisition.

YARA 11
3 年前
loading...
Website
Wikipedia