IRTriage

System scraper

Automated incident response tool for collecting critical system information during forensic analysis of Windows systems.

Incident Response Triage - Windows Evidence Collection for Forensic Analysis

GitHub

130 stars
17 watching
23 forks
Language: AutoIt
last commit: over 8 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
jimtin/ircoreforensicframework Automates incident response actions to gather and process forensic artefacts from remote systems 22
crowdstrike/automactc Automated collection and analysis tool for macOS forensic artifacts 532
tclahr/uac Automates incident response data collection from various operating systems 797
tap-ir/tapir An incident response framework with multi-user support, providing plugins for file analysis and a REST API for data access 44
rastrea2r/rastrea2r A tool for incident responders and security analysts to triage suspect systems, hunt for IOCs, and collect forensic evidence. 238
withsecurelabs/linuxcatscale Automates incident response collection and processing on Linux hosts. 267
securityjoes/forensicminer Automates evidence collection and analysis from Windows machines using PowerShell. 148
ajwdewit/agera5tools Tools for managing and manipulating AgERA5 data, including mirroring, exporting, extracting, and serving. 13
vespperhq/vespper An AI-powered on-call engineer tool that automates incident investigation and provides contextual insights 287
sekoialab/fastir_collector A tool for collecting and analyzing Windows system artefacts on live systems 506
cyberdefenseinstitute/cdir A tool designed to collect data from Windows systems during an incident response 154
atc-project/atc-react A knowledge base of actionable Incident Response techniques 613
travisfoley/dfirtriage A digital forensic tool designed to gather and analyze data from Windows-based systems in incident response scenarios. 334
certsocietegenerale/irm Operational guidelines and best practices for handling various types of security incidents 978
mitre/advmlthreatmatrix A framework to help security analysts understand and prepare for adversarial machine learning attacks on AI systems 1,050