velociraptor by Velocidex

Digging Deeper....

updated at May 12, 2024, 2:26 p.m.

Go

70 +0

2,692 +19

450 +3

GitHub
fleet by fleetdm

Open-source platform for IT, security, and infrastructure teams. (Linux, macOS, Chrome, Windows, cloud, data center)

updated at May 12, 2024, 9:56 a.m.

Go

31 -1

2,180 +19

351 -1

GitHub
fibratus by rabbitstack

A modern tool for Windows kernel exploration and tracing with a focus on security

updated at May 12, 2024, 3:07 a.m.

Go

72 +0

2,085 +9

183 +0

GitHub
flightsim by alphasoc

A utility to safely generate malicious network traffic patterns and evaluate controls.

updated at May 11, 2024, 6:19 a.m.

Go

35 +0

1,188 +2

128 +0

GitHub
catalyst by SecurityBrewery

Catalyst is an open source SOAR and ticket system that helps to automate alert handling and incident response processes

updated at May 9, 2024, 2:01 a.m.

Go

5 +0

272 +1

33 +1

GitHub
artifactcollector by forensicanalysis

🚨 The artifactcollector is a customizable agent to collect forensic artifacts on any Windows, macOS or Linux system

updated at May 7, 2024, 9:07 p.m.

Go

9 +0

241 +2

19 +1

GitHub
nightHawkResponse by biggiesmallsAG

Incident Response Forensic Framework

updated at April 27, 2024, 8:49 a.m.

Go

82 +0

596 +0

139 +0

GitHub
stenographer by google

Stenographer is a packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast access to subsets of those packets. Discussion/announcements at stenographer@googlegroups.com

updated at April 25, 2024, 6:46 p.m.

Go

104 +0

1,788 +0

232 +1

GitHub
spyre by spyre-project

simple YARA-based IOC scanner

updated at April 11, 2024, 10:31 a.m.

Go

12 +0

159 +0

27 +0

GitHub