Cortex
MemProcFS-Analyzer
Cortex | MemProcFS-Analyzer | |
---|---|---|
4 | 2 | |
1,250 | 403 | |
1.0% | - | |
4.1 | 6.1 | |
10 days ago | about 2 months ago | |
Scala | PowerShell | |
GNU Affero General Public License v3.0 | GNU General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Cortex
-
Internal Threat Intel Database
TheHive Cortex might come in handy here:https://github.com/TheHive-Project/Cortex
-
Top 20 Open-source tools for every Blue Teamer
TheHive is a scalable 4-in-1 open source and free security incident response platform designed to make life easier for SOCs, CSIRTs, CERTs, and any information security practitioner dealing with security incidents that need to be investigated and acted upon swiftly. Thanks to Cortex, our powerful free and open-source analysis engine, you can analyze (and triage) observables at scale using more than 100 analyzers.
-
Looking for a web script dashboard solution
Basically, I am looking for something a bit like Cortex (screenshot), but for a generic and standalone use.
-
Launch HN: Opstrace (YC S19) – open-source Datadog
Thanks for the correction! You linked to the right Cortex, not to be confused with https://github.com/TheHive-Project/Cortex, haha. https://github.com/cortexproject/cortex is what we talk about. Naming is hard.
MemProcFS-Analyzer
-
MemProcFS - This Changes Everything
I’ve been using this for a bit now and love it! Also please check the work done by evil3ad with MemProcFS-Analyzer. https://github.com/evild3ad/MemProcFS-Analyzer
- Volatility 3 commands and usage tips to get started with memory forensics. Volatility 3 + plugins make it easy to do advanced memory analysis.
What are some alternatives?
IntelOwl - IntelOwl: manage your Threat Intelligence at scale
MemLabs - Educational, CTF-styled labs for individuals interested in Memory Forensics
Kuiper - Digital Forensics Investigation Platform
community - Volatility plugins developed and maintained by the community
catalyst - Catalyst is an open source SOAR and ticket system that helps to automate alert handling and incident response processes
dfir-orc - Forensics artefact collection tool for systems running Microsoft Windows
Trawler - PowerShell script to help Incident Responders discover potential adversary persistence mechanisms.
ThePhish - ThePhish: an automated phishing email analysis tool
Live-Forensicator - Powershell Script to aid Incidence Response and Live Forensics | Bash Script for MacOS Live Forensics and Incidence Response
opencti - Open Cyber Threat Intelligence Platform
community3 - Volatility3 plugins developed and maintained by the community