uac
Incident collector
Automates incident response data collection from various operating systems
UAC is a Live Response collection script for Incident Response that makes use of native binaries and tools to automate the collection of AIX, ESXi, FreeBSD, Linux, macOS, NetBSD, NetScaler, OpenBSD and Solaris systems artifacts.
797 stars
28 watching
124 forks
Language: Shell
last commit: 22 days ago
Linked from 2 awesome lists
aixcollectorcomputer-forensicsdfiresxiforensicsfreebsdincident-responselinuxlive-responsemacosnetbsdnetscaleropenbsdscriptsecurityshellsolaristerminaltriage
Related projects:
Repository | Description | Stars |
---|---|---|
op7ic/unix_collector | A tool for collecting forensic data from various UNIX-like systems | 32 |
withsecurelabs/linuxcatscale | Automates incident response collection and processing on Linux hosts. | 267 |
ajmartel/irtriage | Automated incident response tool for collecting critical system information during forensic analysis of Windows systems. | 130 |
abdulrhmanalfaifi/fennec | Tool for collecting artifacts from *nix systems during incident response | 192 |
orlikoski/cylr | A tool that collects and preserves forensic artifacts from NTFS file systems without impacting the host system. | 645 |
tap-ir/tapir | An incident response framework with multi-user support, providing plugins for file analysis and a REST API for data access | 44 |
cisagov/untitledgoosetool | A tool for investigating and responding to security incidents in cloud-based Microsoft environments. | 913 |
vespperhq/vespper | An AI-powered on-call engineer tool that automates incident investigation and provides contextual insights | 287 |
atc-project/atc-react | A knowledge base of actionable Incident Response techniques | 613 |
crowdstrike/automactc | Automated collection and analysis tool for macOS forensic artifacts | 532 |
opentsdb/tcollector | A framework for collecting and storing data in an open-source distributed database system | 513 |
jimtin/ircoreforensicframework | Automates incident response actions to gather and process forensic artefacts from remote systems | 22 |
cyberdefenseinstitute/cdir | A tool designed to collect data from Windows systems during an incident response | 154 |
omenscan/achoir | A scripting framework to simplify the process of gathering forensic artifacts from Windows devices. | 183 |
aws-samples/aws-incident-response-playbooks | A collection of customizable templates for responding to common AWS security incidents | 926 |