COLLECTED BY
Organization:
Internet Archive
Focused crawls are collections of frequently-updated webcrawl data from narrow (as opposed to broad or wide) web crawls, often focused on a single domain or subdomain.
The Wayback Machine - https://web.archive.org/web/20200730085942/https://github.com/topics/dfir
Here are
249 public repositories
matching this topic...
List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.
Updated
Jul 28, 2020
Shell
A curated list of tools for incident response
Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.
Security Onion 16.04 - Linux distro for threat hunting, enterprise security monitoring, and log management
A Threat hunter's playbook to aid the development of techniques and hypothesis for hunting campaigns.
Updated
Jun 22, 2020
Python
Automate the creation of a lab environment complete with security tooling and logging best practices
Updated
Jul 28, 2020
HTML
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
Updated
Jul 23, 2020
XSLT
Loki - Simple IOC and Incident Response Scanner
Updated
Jul 7, 2020
Python
TheHive: a Scalable, Open Source and Free Security Incident Response Platform
Updated
Jul 29, 2020
HTML
Investigate malicious Windows logon by visualizing and analyzing Windows event log
Updated
Jul 29, 2020
JavaScript
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
Updated
Dec 10, 2018
XSLT
Collaborative forensic timeline analysis
Updated
Jul 16, 2020
Python
A curated list of awesome forensic analysis tools and resources
VirusTotal Wanna Be - Now with 100% more Hipster
Signature base for my scanner tools
Updated
Jul 27, 2020
YARA
Malcom - Malware Communications Analyzer
Updated
Nov 29, 2017
Python
A repository of sysmon configuration modules
Updated
Jul 30, 2020
PowerShell
Your Everyday Threat Intelligence
Updated
Jul 30, 2020
Python
Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.
Updated
Dec 3, 2019
Python
A Splunk app mapped to MITRE ATT&CK to guide your threat hunts
Updated
Jul 28, 2020
Python
Cortex: a Powerful Observable Analysis and Active Response Engine
Updated
May 9, 2020
Scala
Diffy is a triage tool used during cloud-centric security incidents, to help digital forensics and incident response (DFIR) teams quickly identify suspicious hosts on which to focus their response.
Updated
Apr 24, 2020
Python
Educational, CTF-styled labs for individuals interested in Memory Forensics
Web browser forensics for Google Chrome/Chromium
Updated
Jul 29, 2020
Python
Advanced Sysmon configuration, Installer & Auto Updater with high-quality event tracing
Updated
Feb 20, 2019
Batchfile
A list of cyber-chef recipes and curated links
Automation and Scaling of Digital Forensics Tools
Updated
Jul 23, 2020
Python
Extract and aggregate threat intelligence.
Updated
Jul 16, 2020
Python
Lookyloo is a web interface allowing to scrape a website and then displays a tree of domains calling each other.
Updated
Jul 29, 2020
Python
swap_digger is a tool used to automate Linux swap analysis during post-exploitation or forensics. It automates swap extraction and searches for Linux user credentials, web forms credentials, web forms emails, http basic authentication, Wifi SSID and keys, etc.
Updated
Jul 13, 2018
Shell
Improve this page
Add a description, image, and links to the
dfir
topic page so that developers can more easily learn about it.
Curate this topic
Add this topic to your repo
To associate your repository with the
dfir
topic, visit your repo's landing page and select "manage topics."
Learn more
You can’t perform that action at this time.
You signed in with another tab or window. Reload to refresh your session.
You signed out in another tab or window. Reload to refresh your session.