dfir-orc
awesome-incident-response
dfir-orc | awesome-incident-response | |
---|---|---|
1 | 4 | |
356 | 7,145 | |
0.3% | - | |
8.9 | 6.1 | |
3 months ago | about 1 month ago | |
C++ | ||
GNU Lesser General Public License v3.0 only | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
dfir-orc
-
Standard artifact gathering script
Looks great! Will dig into that. It looks like French ANSSI's DFIR-ORC. Maybe a good solution.
awesome-incident-response
-
Cybersecurity Repositories
Incident Response
- Questions about getting into DF
-
I started a new role as a Incident Response Analyst and wanted to get some advice.
Here is a good github page that discusses tons of IR stuff. https://github.com/meirwah/awesome-incident-response
-
Has this sub done any curated reasearch collection sharing?
GitHub sounds totally viable. You might consider styling it after something like Awesome Lists. (Ex: Awesome Incident Response). But yes, totally viable.
What are some alternatives?
TheHive - TheHive: a Scalable, Open Source and Free Security Incident Response Platform
Kuiper - Digital Forensics Investigation Platform
tenzir - Open source security data pipelines.
cyberchef-recipes - A list of cyber-chef recipes and curated links
Cortex - Cortex: a Powerful Observable Analysis and Active Response Engine
DevSecOps - Ultimate DevSecOps library
beagle - Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.
DFIRMindMaps - A repository of DFIR-related Mind Maps geared towards the visual learners!
vast - VAST is an experimental compiler pipeline designed for program analysis of C and C++. It provides a tower of IRs as MLIR dialects to choose the best fit representations for a program analysis or further program abstraction.
awesome-sre - A curated list of Site Reliability and Production Engineering resources.
awesome-pentest - A collection of awesome penetration testing resources, tools and other shiny things
awesome-forensics - A curated list of awesome forensic analysis tools and resources