Skip to content

Some portable tools, some YARA, some Python, and a little bit of love. Not all of these tools can be used in incident response. Use PEs with caution.

Notifications You must be signed in to change notification settings

blkdevcon/blue-team

 
 

Repository files navigation

Tools of the Trade

If you have any issues with a tool here, or have questions about usage, or really anything, please reach out and I will be glad to help.

The tools here are broad in function but have many uses in the Triage/Threat Hunting/Incident Response fields. Be careful and do your own research with PEs you find on the internet!

Tools like Seatbelt can be compiled directly from their source code, while triage-ir-v1 cannot. I have determined that these tools are safe, but again, do your own research!

About

Some portable tools, some YARA, some Python, and a little bit of love. Not all of these tools can be used in incident response. Use PEs with caution.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages

  • YARA 20.3%
  • C++ 18.9%
  • HTML 16.4%
  • Python 14.0%
  • PowerShell 10.1%
  • C# 7.7%
  • Other 12.6%