GitHub topics: dfir-tools
kev365/ToolFetcher
A tool for fetching DFIR and other GitHub tools.
Language: PowerShell - Size: 213 KB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 23 - Forks: 2

DrPwner/Velociraptor-Syslog
This tool monitors Velociraptor's syslog messages for specific actions performed by users within the Velociraptor DFIR platform. When certain patterns are detected, it sends detailed email notifications to designated recipients, providing enhanced visibility into user activities and potential security events.
Language: Python - Size: 31.3 KB - Last synced at: 14 days ago - Pushed at: 14 days ago - Stars: 0 - Forks: 0

sleepytariq/lnkparse
A tool to parse .lnk files
Language: Go - Size: 35.2 KB - Last synced at: 21 days ago - Pushed at: 22 days ago - Stars: 1 - Forks: 0

Lazza/Fuji
MacOS forensic acquisition made simple
Language: Python - Size: 1.04 MB - Last synced at: 29 days ago - Pushed at: 29 days ago - Stars: 100 - Forks: 14

Jakobish/pdforensic_toolkit
A forensic command-line tool for deep analyzing PDF files
Language: Python - Size: 40 KB - Last synced at: 12 days ago - Pushed at: about 1 month ago - Stars: 0 - Forks: 0

CERTSYNETIS/PyTriage
Outil de triage automatisé de différents types de collectes d'artefacts.
Language: JavaScript - Size: 647 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 5 - Forks: 0

luminaut-org/luminaut
Casting light on shadow cloud deployments. Detect exposure of resources deployed in AWS.
Language: Python - Size: 26 MB - Last synced at: 25 days ago - Pushed at: about 2 months ago - Stars: 13 - Forks: 2

CH-CLARK/WalletSleuth
Cryptocurrency Triage Tool - Identify multiple cryptocurrency addresses and transactions from various wallet applications!
Language: Python - Size: 316 KB - Last synced at: 4 months ago - Pushed at: 4 months ago - Stars: 16 - Forks: 2

couragebforedth/get-uv-logs
A batch script that quickly obtains the relevent forensic info for an UltraViewer compromise.
Language: Batchfile - Size: 11.7 KB - Last synced at: about 2 months ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

JakePeralta7/HiveAnalyzer
Language: Python - Size: 151 KB - Last synced at: 6 months ago - Pushed at: 6 months ago - Stars: 2 - Forks: 0

izm1chael/wuodan
Wuodan is a command-line tool designed for efficiently searching through files and directories for strings or regular expressions
Language: Python - Size: 19.5 KB - Last synced at: about 1 month ago - Pushed at: 8 months ago - Stars: 0 - Forks: 0

fulco/BlueLinuxTriage
Basic rapid linux IR bash script
Language: Shell - Size: 7.81 KB - Last synced at: about 1 month ago - Pushed at: 8 months ago - Stars: 0 - Forks: 0

gustavonaldoni/bfcpf
bfcpf stands for "Brute Force CPF" and it is a CLI tool that breaks a partial CPF, finding all valid ones within the pattern given by the user.
Language: Python - Size: 8.22 MB - Last synced at: 8 months ago - Pushed at: 8 months ago - Stars: 0 - Forks: 0

mthcht/KapeFiles2DFIR-orc-config
Convert Kape Files to DFIR-ORC configurations
Language: Python - Size: 361 KB - Last synced at: 6 days ago - Pushed at: 9 months ago - Stars: 1 - Forks: 0

flamin-goes/CRISIS-MANAGEMENT-GUIDE
Hey! This is a comprehensive guide for crisis/incident management of the DFIR process. Refer to the README.md file for a sequential flow of content.
Size: 69.3 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0
