awesome-incident-response
dfir-orc
Our great sponsors
awesome-incident-response | dfir-orc | |
---|---|---|
4 | 1 | |
7,114 | 356 | |
- | 2.2% | |
5.6 | 8.9 | |
about 1 month ago | 3 months ago | |
C++ | ||
Apache License 2.0 | GNU Lesser General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
awesome-incident-response
-
Cybersecurity Repositories
Incident Response
- Questions about getting into DF
-
I started a new role as a Incident Response Analyst and wanted to get some advice.
Here is a good github page that discusses tons of IR stuff. https://github.com/meirwah/awesome-incident-response
-
Has this sub done any curated reasearch collection sharing?
GitHub sounds totally viable. You might consider styling it after something like Awesome Lists. (Ex: Awesome Incident Response). But yes, totally viable.
dfir-orc
-
Standard artifact gathering script
Looks great! Will dig into that. It looks like French ANSSI's DFIR-ORC. Maybe a good solution.
What are some alternatives?
Kuiper - Digital Forensics Investigation Platform
TheHive - TheHive: a Scalable, Open Source and Free Security Incident Response Platform
cyberchef-recipes - A list of cyber-chef recipes and curated links
tenzir - Open source security data pipelines.
DevSecOps - Ultimate DevSecOps library
Cortex - Cortex: a Powerful Observable Analysis and Active Response Engine
DFIRMindMaps - A repository of DFIR-related Mind Maps geared towards the visual learners!
beagle - Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.
awesome-sre - A curated list of Site Reliability and Production Engineering resources.
vast - VAST is an experimental compiler pipeline designed for program analysis of C and C++. It provides a tower of IRs as MLIR dialects to choose the best fit representations for a program analysis or further program abstraction.
awesome-pentest - A collection of awesome penetration testing resources, tools and other shiny things
awesome-forensics - A curated list of awesome forensic analysis tools and resources