IRTriage

System scraper

Automated incident response tool for collecting critical system information during forensic analysis of Windows systems.

Incident Response Triage - Windows Evidence Collection for Forensic Analysis

GitHub

130 stars
17 watching
23 forks
Language: AutoIt
last commit: over 10 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
jimtin/ircoreforensicframeworkAutomates incident response actions to gather and process forensic artefacts from remote systems22
crowdstrike/automactcAutomated collection and analysis tool for macOS forensic artifacts534
tclahr/uacAutomates incident response data collection from various operating systems824
tap-ir/tapirAn incident response framework with multi-user support, providing plugins for file analysis and a REST API for data access45
rastrea2r/rastrea2rA tool for incident responders and security analysts to triage suspect systems, hunt for IOCs, and collect forensic evidence.236
withsecurelabs/linuxcatscaleAutomates incident response collection and processing on Linux hosts.274
securityjoes/forensicminerAutomates evidence collection and analysis from Windows machines using PowerShell.149
ajwdewit/agera5toolsTools for managing and manipulating AgERA5 data, including mirroring, exporting, extracting, and serving.13
vespperhq/vespperAn AI-powered on-call engineer tool that automatically investigates incidents and provides contextual insights305
sekoialab/fastir_collectorA tool for collecting and analyzing Windows system artefacts on live systems507
cyberdefenseinstitute/cdirA tool designed to collect data from Windows systems during an incident response154
atc-project/atc-reactA knowledge base of actionable Incident Response techniques615
travisfoley/dfirtriageA digital forensic tool designed to gather and analyze data from Windows-based systems in incident response scenarios.335
certsocietegenerale/irmOperational guidelines and best practices for handling various types of security incidents982
mitre/advmlthreatmatrixA framework to help security analysts understand and prepare for adversarial machine learning attacks on AI systems1,056