fileintel by keithjjones

A modular Python application to pull intelligence about malicious files

updated at Oct. 3, 2024, 5:12 a.m.

Python

17 +0

118 +0

25 +0

GitHub
hostintel by keithjjones

A modular Python application to collect intelligence for malicious hosts.

updated at Oct. 3, 2024, 5:12 a.m.

Python

30 +0

262 +0

51 +0

GitHub
CIRTKit by opensourcesec

Tools for the Computer Incident Response Team computer

updated at Oct. 3, 2024, 5:12 a.m.

Python

20 +0

142 +0

25 +0

GitHub
AChoir by OMENScan

Windows Live Artifacts Acquisition Script

updated at Sept. 30, 2024, 2:54 a.m.

C++

13 +0

183 +0

29 +0

GitHub
IRTriage by AJMartel

Incident Response Triage - Windows Evidence Collection for Forensic Analysis

updated at Sept. 24, 2024, 5:50 p.m.

AutoIt

17 +0

130 +0

23 +0

GitHub
VolatilityBot by mkorman90

VolatilityBot – An automated memory analyzer for malware samples and memory dumps

updated at Sept. 15, 2024, 8:26 p.m.

Python

27 +0

263 +0

59 +0

GitHub
PowerSponse by swisscom

PowerSponse is a PowerShell module focused on targeted containment and remediation during incident response.

updated at Sept. 10, 2024, 5:40 a.m.

PowerShell

16 +0

38 +0

6 +0

GitHub
AutoTTP by jymcheong

Automated Tactics Techniques & Procedures

updated at Sept. 9, 2024, 2:37 a.m.

Python

24 +0

251 +0

64 +0

GitHub
Panorama by AlmCo

Fast incident overview

updated at Aug. 24, 2024, 4:57 p.m.

Python

3 +0

39 +0

7 +0

GitHub
Invoke-LiveResponse by mgreen27

Invoke-LiveResponse

updated at Aug. 24, 2024, 4:40 p.m.

PowerShell

13 +0

145 +0

29 +0

GitHub
pyarascanner by nogoodconfig

A simple many-rules to many-files YARA scanner for incident response or malware zoos.

updated at Aug. 24, 2024, 4:20 p.m.

Python

3 +0

26 +0

4 +0

GitHub
evolve by JamesHabben

Web interface for the Volatility Memory Forensics Framework

updated at Aug. 24, 2024, 4:08 p.m.

JavaScript

38 +0

259 +0

42 +0

GitHub
mutablesecurity by MutableSecurity

CLI program for automating the setup, configuration, and use of cybersecurity solutions

updated at Aug. 23, 2024, 2:58 p.m.

Python

1 +0

43 +0

7 +0

GitHub
PowerGRR by swisscom

PowerGRR is an API client library in PowerShell working on Windows, Linux and macOS for GRR automation and scripting.

updated at Aug. 26, 2023, 6:23 p.m.

PowerShell

21 +0

56 +0

7 +0

GitHub