VirusTotal Wanna Be - Now with 100% more Hipster
-
Updated
Apr 3, 2023 - Go
VirusTotal Wanna Be - Now with 100% more Hipster
Catalyst is an open source SOAR and ticket system that helps to automate alert handling and incident response processes
Incident Response - Fast suspicious file finder
🚨 The artifactcollector is a customizable agent to collect forensic artifacts on any Windows, macOS or Linux system
Signature engine for all your logs
🕵️ Process and show forensic artifacts (e.g. eventlogs, usb devices, network devices...) in forensicstores
Dumps all of the Key/Value pairs from a LevelDB database
Live system forensic collector
Go script that finds a matching hash or a diff of a target hash in a directory.
Helping Incident Responders hunt for potential persistence mechanisms on UNIX-based systems.
urlyzer is a URL parsing analysis tool.
Cross Platform (Go app) - to parse Windows Tasks UTF-16 le ecoded xml files to csv or onscreen tab
An interactive shell for The Sleuth Kit's fls tool.
Quick and dirty method do data exfil binary files in the form of hex strings to GCP's cloud logging easily bypassing most DLP
Add a description, image, and links to the dfir topic page so that developers can more easily learn about it.
To associate your repository with the dfir topic, visit your repo's landing page and select "manage topics."