PowerShell incident-response

Open-source PowerShell projects categorized as incident-response

Top 6 PowerShell incident-response Projects

  • PersistenceSniper

    Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines. Official Twitter/X account @PersistSniper. Made with ❤️ by @last0x00 and @dottor_morte

    Project mention: PersistenceSniper v1.13.0 and in-depth Wiki by @last0x00 | /r/netsec | 2023-10-10
  • AzureHunter

    A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

  • MemProcFS-Analyzer

    MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR

  • Trawler

    PowerShell script to help Incident Responders discover potential adversary persistence mechanisms.

    Project mention: Non-SysAdmin Use Cases for PowerShell? Basically, any use cases NOT involving network, RDP, system config, IT/LAN admin type stuff? | /r/PowerShell | 2023-05-10

    I use it for DFIR work - example - https://github.com/joeavanzato/Trawler

  • Collect-MemoryDump

    Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR

  • Power-Response

    Powering Up Incident Response with Power-Response

NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020). The latest post mention was on 2023-10-10.

PowerShell incident-response related posts

Index

What are some of the best open-source incident-response projects in PowerShell? This list will help you:

Project Stars
1 PersistenceSniper 1,774
2 AzureHunter 755
3 MemProcFS-Analyzer 396
4 Trawler 285
5 Collect-MemoryDump 209
6 Power-Response 61
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com