CDIR
Incident responder
A tool designed to collect data from Windows systems during an incident response
CDIR (Cyber Defense Institute Incident Response) Collector - live collection tool based on oss tool/library
154 stars
22 watching
24 forks
Language: C
last commit: about 1 month ago dfirforensicsincident-response
Related projects:
Repository | Description | Stars |
---|---|---|
jimtin/ircoreforensicframework | Automates incident response actions to gather and process forensic artefacts from remote systems | 22 |
cdefid/thehiveirplaybook | A collection of incident response case templates for TheHive | 13 |
tap-ir/tapir | An incident response framework with multi-user support, providing plugins for file analysis and a REST API for data access | 44 |
opensourcesec/cirtkit | A comprehensive toolset for digital forensics and incident response analysis using Python | 142 |
dfir-iris/iris-web | A collaborative incident response platform allowing technical details to be shared during investigations | 1,086 |
codeyourweb/fastfinder | Tools for detecting suspicious files and directories on Windows and Linux endpoints. | 233 |
orlikoski/cdqr | A tool for analyzing forensic data from various devices and platforms | 334 |
securitybrewery/catalyst | An incident response platform for automating alert handling and procedures. | 354 |
atc-project/atc-react | A knowledge base of actionable Incident Response techniques | 614 |
0xrawsec/whids | An open source EDR solution designed to provide real-time incident response capabilities by detecting potential security threats on Windows systems. | 1,151 |
cyb3rfox/aurora-incident-response | An incident response tool designed to facilitate the tracking of findings and tasks in incident investigations | 771 |
dfirtrack/dfirtrack | A web-based application for tracking and managing incident response efforts in large-scale digital forensic investigations. | 482 |
mgreen27/invoke-liveresponse | A live response tool for targeted collection of data from compromised devices. | 145 |
certsocietegenerale/irm | Operational guidelines and best practices for handling various types of security incidents | 981 |
pagerduty/incident-response-docs | The documentation repository for PagerDuty's incident response process. | 1,022 |