uac

Incident collector

Automates incident response data collection from various operating systems

UAC is a Live Response collection script for Incident Response that makes use of native binaries and tools to automate the collection of AIX, ESXi, FreeBSD, Linux, macOS, NetBSD, NetScaler, OpenBSD and Solaris systems artifacts.

GitHub

797 stars
28 watching
124 forks
Language: Shell
last commit: 22 days ago
Linked from 2 awesome lists

aixcollectorcomputer-forensicsdfiresxiforensicsfreebsdincident-responselinuxlive-responsemacosnetbsdnetscaleropenbsdscriptsecurityshellsolaristerminaltriage

Backlinks from these awesome lists:

Related projects:

Repository Description Stars
op7ic/unix_collector A tool for collecting forensic data from various UNIX-like systems 32
withsecurelabs/linuxcatscale Automates incident response collection and processing on Linux hosts. 267
ajmartel/irtriage Automated incident response tool for collecting critical system information during forensic analysis of Windows systems. 130
abdulrhmanalfaifi/fennec Tool for collecting artifacts from *nix systems during incident response 192
orlikoski/cylr A tool that collects and preserves forensic artifacts from NTFS file systems without impacting the host system. 645
tap-ir/tapir An incident response framework with multi-user support, providing plugins for file analysis and a REST API for data access 44
cisagov/untitledgoosetool A tool for investigating and responding to security incidents in cloud-based Microsoft environments. 913
vespperhq/vespper An AI-powered on-call engineer tool that automates incident investigation and provides contextual insights 287
atc-project/atc-react A knowledge base of actionable Incident Response techniques 613
crowdstrike/automactc Automated collection and analysis tool for macOS forensic artifacts 532
opentsdb/tcollector A framework for collecting and storing data in an open-source distributed database system 513
jimtin/ircoreforensicframework Automates incident response actions to gather and process forensic artefacts from remote systems 22
cyberdefenseinstitute/cdir A tool designed to collect data from Windows systems during an incident response 154
omenscan/achoir A scripting framework to simplify the process of gathering forensic artifacts from Windows devices. 183
aws-samples/aws-incident-response-playbooks A collection of customizable templates for responding to common AWS security incidents 926