IRTriage
System scraper
Automated incident response tool for collecting critical system information during forensic analysis of Windows systems.
Incident Response Triage - Windows Evidence Collection for Forensic Analysis
130 stars
17 watching
23 forks
Language: AutoIt
last commit: over 8 years ago
Linked from 1 awesome list
Related projects:
Repository | Description | Stars |
---|---|---|
jimtin/ircoreforensicframework | Automates incident response actions to gather and process forensic artefacts from remote systems | 22 |
crowdstrike/automactc | Automated collection and analysis tool for macOS forensic artifacts | 532 |
tclahr/uac | Automates incident response data collection from various operating systems | 797 |
tap-ir/tapir | An incident response framework with multi-user support, providing plugins for file analysis and a REST API for data access | 44 |
rastrea2r/rastrea2r | A tool for incident responders and security analysts to triage suspect systems, hunt for IOCs, and collect forensic evidence. | 238 |
withsecurelabs/linuxcatscale | Automates incident response collection and processing on Linux hosts. | 267 |
securityjoes/forensicminer | Automates evidence collection and analysis from Windows machines using PowerShell. | 148 |
ajwdewit/agera5tools | Tools for managing and manipulating AgERA5 data, including mirroring, exporting, extracting, and serving. | 13 |
vespperhq/vespper | An AI-powered on-call engineer tool that automates incident investigation and provides contextual insights | 287 |
sekoialab/fastir_collector | A tool for collecting and analyzing Windows system artefacts on live systems | 506 |
cyberdefenseinstitute/cdir | A tool designed to collect data from Windows systems during an incident response | 154 |
atc-project/atc-react | A knowledge base of actionable Incident Response techniques | 613 |
travisfoley/dfirtriage | A digital forensic tool designed to gather and analyze data from Windows-based systems in incident response scenarios. | 334 |
certsocietegenerale/irm | Operational guidelines and best practices for handling various types of security incidents | 978 |
mitre/advmlthreatmatrix | A framework to help security analysts understand and prepare for adversarial machine learning attacks on AI systems | 1,050 |