incident-response

Top 23 incident-response Open-Source Projects

  • awesome-sre

    A curated list of Site Reliability and Production Engineering resources.

    Project mention: 24 GitHub repos with 372M views that you can't miss out as a software engineer | dev.to | 2024-01-25

    A curated list of Site Reliability and Production Engineering resources: https://github.com/dastergon/awesome-sre

  • kubeshark

    The API traffic analyzer for Kubernetes providing real-time K8s protocol-level visibility, capturing and monitoring all traffic and payloads going in, out and across containers, pods, nodes and clusters. Inspired by Wireshark, purposely built for Kubernetes

    Project mention: Show HN: Alaz: Open-Source, Self-Hosted, eBPF-Based K8s Monitoring | news.ycombinator.com | 2023-09-06

    The one similar product I had come across is Kubeshark (https://github.com/kubeshark/kubeshark). But admittedly the eBPF way seems more performant theoretically (given you can afford to have a modern-enough kernel). I'm really excited to see how this project develops out.

    The eBPF-mode of innovation is pretty exciting, truly a fresh lens to building software. I'm also following Akita Software - the company building an eBPF paradigm of monitoring.

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

  • Wazuh

    Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.

    Project mention: Exclude certain CIS (sca) rules from agents | /r/Wazuh | 2023-12-11

    There is currently no feature for excluding specific SCA rules however this feature has been requested here and would be added to the roadmap for future releases.

  • howtheysre

    A curated collection of publicly available resources on how technology and tech-savvy organizations around the world practice Site Reliability Engineering (SRE)

    Project mention: 5 GitHub Projects to Help You Become a Better DevOps Engineer ⚡ | dev.to | 2023-06-23

    1. How they SRE

  • my-arsenal-of-aws-security-tools

    List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.

  • awesome-incident-response

    A curated list of tools for incident response

  • oneuptime

    OneUptime is the complete open-source observability platform.

    Project mention: Show HN: OneUptime – open-source Datadog Alternative | news.ycombinator.com | 2024-04-02
  • WorkOS

    The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.

  • awesome-threat-detection

    ✨ A curated list of awesome threat detection and hunting resources 🕵️‍♂️

  • TheHive

    TheHive: a Scalable, Open Source and Free Security Incident Response Platform

    Project mention: What are your go-to tools for task management and/or case work? | /r/cybersecurity | 2023-12-09

    I had a quick test with the hive looks pretty nice. https://thehive-project.org/

  • IntelOwl

    IntelOwl: manage your Threat Intelligence at scale

    Project mention: Monthly Security Checklist | /r/msp | 2023-06-25
  • velociraptor

    Digging Deeper....

    Project mention: How to carry out mass Digital Forensic Collections using open source tools? | /r/computerforensics | 2023-12-06
  • sleuthkit

    The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file system data. The library can be incorporated into larger digital forensics tools and the command line tools can be directly used to find evidence.

    Project mention: Are there any GPU-powered disk forensics libraries/frameworks or programs? | /r/CUDA | 2023-09-28
  • volatility3

    Volatility 3.0 development

    Project mention: Volatility 3 2.4.1 - New Linux and Windows plugins | /r/blueteamsec | 2023-04-22
  • hayabusa

    Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

    Project mention: Release v2.5.0 🦅 of Hayabusa - Hayabusa is a Windows event log fast forensics timeline generator and threat hunting tool | /r/blueteamsec | 2023-05-07
  • cyberchef-recipes

    A list of cyber-chef recipes and curated links

  • PersistenceSniper

    Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines. Official Twitter/X account @PersistSniper. Made with ❤️ by @last0x00 and @dottor_morte

    Project mention: PersistenceSniper v1.13.0 and in-depth Wiki by @last0x00 | /r/netsec | 2023-10-10
  • Bashfuscator

    A fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team.

  • response

    Monzo's real-time incident response and reporting tool ⚡️

  • Incident-Playbook

    GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]

  • beagle

    Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs. (by yampelo)

  • Cortex

    Cortex: a Powerful Observable Analysis and Active Response Engine (by TheHive-Project)

  • postmortem-templates

    A collection of postmortem templates

    Project mention: How to rebound from a really bad deployment? | /r/softwaretesting | 2023-05-17

    Here are lots of templates from GitHub to use for your post-mortem meeting.

  • asn

    ASN / RPKI validity / BGP stats / IPv4v6 / Prefix / URL / ASPath / Organization / IP reputation / IP geolocation / IP fingerprinting / Network recon / lookup API server / Web traceroute server

    Project mention: CLI tool and library that checks an IP address | /r/commandline | 2023-05-30

    Alternative: asn

  • SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020). The latest post mention was on 2024-04-02.

incident-response related posts

Index

What are some of the best open-source incident-response projects? This list will help you:

Project Stars
1 awesome-sre 11,454
2 kubeshark 10,525
3 Wazuh 9,018
4 howtheysre 8,888
5 my-arsenal-of-aws-security-tools 8,680
6 awesome-incident-response 7,098
7 oneuptime 3,926
8 awesome-threat-detection 3,308
9 TheHive 3,166
10 IntelOwl 3,096
11 velociraptor 2,628
12 sleuthkit 2,465
13 volatility3 2,184
14 hayabusa 1,912
15 cyberchef-recipes 1,881
16 PersistenceSniper 1,791
17 Bashfuscator 1,497
18 response 1,494
19 Incident-Playbook 1,329
20 beagle 1,250
21 Cortex 1,237
22 postmortem-templates 1,217
23 asn 1,162
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com