René's URL Explorer Experiment


Title: GitHub - CISSP/awesome-incident-response: A curated list of tools for incident response

Open Graph Title: GitHub - CISSP/awesome-incident-response: A curated list of tools for incident response

X Title: GitHub - CISSP/awesome-incident-response: A curated list of tools for incident response

Description: A curated list of tools for incident response. Contribute to CISSP/awesome-incident-response development by creating an account on GitHub.

Open Graph Description: A curated list of tools for incident response. Contribute to CISSP/awesome-incident-response development by creating an account on GitHub.

X Description: A curated list of tools for incident response. Contribute to CISSP/awesome-incident-response development by creating an account on GitHub.

Opengraph URL: https://github.com/CISSP/awesome-incident-response

X: @github

direct link

Domain: patch-diff.githubusercontent.com

route-pattern/:user_id/:repository
route-controllerfiles
route-actiondisambiguate
fetch-noncev2:4a7c5d9e-1e09-363a-ad74-3bd13ee59dba
current-catalog-service-hashf3abb0cc802f3d7b95fc8762b94bdcb13bf39634c40c357301c4aa1d67a256fb
request-idD3BC:6E05D:E28120:125F626:6992A7C1
html-safe-nonce728f3982e6517957bd1fd7906572e3b1824f77a384ffefa94d6b5028edd695bb
visitor-payloadeyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJEM0JDOjZFMDVEOkUyODEyMDoxMjVGNjI2OjY5OTJBN0MxIiwidmlzaXRvcl9pZCI6IjQxNjEyMzExMzAwOTQzODA5OTMiLCJyZWdpb25fZWRnZSI6ImlhZCIsInJlZ2lvbl9yZW5kZXIiOiJpYWQifQ==
visitor-hmac741f3f67f76ba999fa46dd8e0f84006bc9875655fa30f219f3d8199e1e1e7d54
hovercard-subject-tagrepository:380609519
github-keyboard-shortcutsrepository,copilot
google-site-verificationApib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I
octolytics-urlhttps://collector.github.com/github/collect
analytics-location//
fb:app_id1401488693436528
apple-itunes-appapp-id=1477376905, app-argument=https://github.com/CISSP/awesome-incident-response
twitter:imagehttps://opengraph.githubassets.com/63947ba42a1eae5bd4e69e735445484d312630548cdda92d4967268de00c2a9c/CISSP/awesome-incident-response
twitter:cardsummary_large_image
og:imagehttps://opengraph.githubassets.com/63947ba42a1eae5bd4e69e735445484d312630548cdda92d4967268de00c2a9c/CISSP/awesome-incident-response
og:image:altA curated list of tools for incident response. Contribute to CISSP/awesome-incident-response development by creating an account on GitHub.
og:image:width1200
og:image:height600
og:site_nameGitHub
og:typeobject
hostnamegithub.com
expected-hostnamegithub.com
None42c603b9d642c4a9065a51770f75e5e27132fef0e858607f5c9cb7e422831a7b
turbo-cache-controlno-preview
go-importgithub.com/CISSP/awesome-incident-response git https://github.com/CISSP/awesome-incident-response.git
octolytics-dimension-user_id967307
octolytics-dimension-user_loginCISSP
octolytics-dimension-repository_id380609519
octolytics-dimension-repository_nwoCISSP/awesome-incident-response
octolytics-dimension-repository_publictrue
octolytics-dimension-repository_is_forktrue
octolytics-dimension-repository_parent_id45943554
octolytics-dimension-repository_parent_nwomeirwah/awesome-incident-response
octolytics-dimension-repository_network_root_id45943554
octolytics-dimension-repository_network_root_nwomeirwah/awesome-incident-response
turbo-body-classeslogged-out env-production page-responsive
disable-turbofalse
browser-stats-urlhttps://api.github.com/_private/browser/stats
browser-errors-urlhttps://api.github.com/_private/browser/errors
release848bc6032dcc93a9a7301dcc3f379a72ba13b96e
ui-targetfull
theme-color#1e2327
color-schemelight dark

Links:

Skip to contenthttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#start-of-content
https://patch-diff.githubusercontent.com/
Sign in https://patch-diff.githubusercontent.com/login?return_to=https%3A%2F%2Fgithub.com%2FCISSP%2Fawesome-incident-response
GitHub CopilotWrite better code with AIhttps://github.com/features/copilot
GitHub SparkBuild and deploy intelligent appshttps://github.com/features/spark
GitHub ModelsManage and compare promptshttps://github.com/features/models
MCP RegistryNewIntegrate external toolshttps://github.com/mcp
ActionsAutomate any workflowhttps://github.com/features/actions
CodespacesInstant dev environmentshttps://github.com/features/codespaces
IssuesPlan and track workhttps://github.com/features/issues
Code ReviewManage code changeshttps://github.com/features/code-review
GitHub Advanced SecurityFind and fix vulnerabilitieshttps://github.com/security/advanced-security
Code securitySecure your code as you buildhttps://github.com/security/advanced-security/code-security
Secret protectionStop leaks before they starthttps://github.com/security/advanced-security/secret-protection
Why GitHubhttps://github.com/why-github
Documentationhttps://docs.github.com
Bloghttps://github.blog
Changeloghttps://github.blog/changelog
Marketplacehttps://github.com/marketplace
View all featureshttps://github.com/features
Enterpriseshttps://github.com/enterprise
Small and medium teamshttps://github.com/team
Startupshttps://github.com/enterprise/startups
Nonprofitshttps://github.com/solutions/industry/nonprofits
App Modernizationhttps://github.com/solutions/use-case/app-modernization
DevSecOpshttps://github.com/solutions/use-case/devsecops
DevOpshttps://github.com/solutions/use-case/devops
CI/CDhttps://github.com/solutions/use-case/ci-cd
View all use caseshttps://github.com/solutions/use-case
Healthcarehttps://github.com/solutions/industry/healthcare
Financial serviceshttps://github.com/solutions/industry/financial-services
Manufacturinghttps://github.com/solutions/industry/manufacturing
Governmenthttps://github.com/solutions/industry/government
View all industrieshttps://github.com/solutions/industry
View all solutionshttps://github.com/solutions
AIhttps://github.com/resources/articles?topic=ai
Software Developmenthttps://github.com/resources/articles?topic=software-development
DevOpshttps://github.com/resources/articles?topic=devops
Securityhttps://github.com/resources/articles?topic=security
View all topicshttps://github.com/resources/articles
Customer storieshttps://github.com/customer-stories
Events & webinarshttps://github.com/resources/events
Ebooks & reportshttps://github.com/resources/whitepapers
Business insightshttps://github.com/solutions/executive-insights
GitHub Skillshttps://skills.github.com
Documentationhttps://docs.github.com
Customer supporthttps://support.github.com
Community forumhttps://github.com/orgs/community/discussions
Trust centerhttps://github.com/trust-center
Partnershttps://github.com/partners
GitHub SponsorsFund open source developershttps://github.com/sponsors
Security Labhttps://securitylab.github.com
Maintainer Communityhttps://maintainers.github.com
Acceleratorhttps://github.com/accelerator
Archive Programhttps://archiveprogram.github.com
Topicshttps://github.com/topics
Trendinghttps://github.com/trending
Collectionshttps://github.com/collections
Enterprise platformAI-powered developer platformhttps://github.com/enterprise
GitHub Advanced SecurityEnterprise-grade security featureshttps://github.com/security/advanced-security
Copilot for BusinessEnterprise-grade AI featureshttps://github.com/features/copilot/copilot-business
Premium SupportEnterprise-grade 24/7 supporthttps://github.com/premium-support
Pricinghttps://github.com/pricing
Search syntax tipshttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
documentationhttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
Sign in https://patch-diff.githubusercontent.com/login?return_to=https%3A%2F%2Fgithub.com%2FCISSP%2Fawesome-incident-response
Sign up https://patch-diff.githubusercontent.com/signup?ref_cta=Sign+up&ref_loc=header+logged+out&ref_page=%2F%3Cuser-name%3E%2F%3Crepo-name%3E&source=header-repo&source_repo=CISSP%2Fawesome-incident-response
Reloadhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response
Reloadhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response
Reloadhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response
CISSP https://patch-diff.githubusercontent.com/CISSP
awesome-incident-responsehttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response
meirwah/awesome-incident-responsehttps://patch-diff.githubusercontent.com/meirwah/awesome-incident-response
Notifications https://patch-diff.githubusercontent.com/login?return_to=%2FCISSP%2Fawesome-incident-response
Fork 0 https://patch-diff.githubusercontent.com/login?return_to=%2FCISSP%2Fawesome-incident-response
Star 2 https://patch-diff.githubusercontent.com/login?return_to=%2FCISSP%2Fawesome-incident-response
Apache-2.0 license https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/blob/master/LICENSE
2 stars https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/stargazers
1.6k forks https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/forks
Branches https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/branches
Tags https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/tags
Activity https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/activity
Star https://patch-diff.githubusercontent.com/login?return_to=%2FCISSP%2Fawesome-incident-response
Notifications https://patch-diff.githubusercontent.com/login?return_to=%2FCISSP%2Fawesome-incident-response
Code https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response
Pull requests 0 https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/pulls
Actions https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/actions
Projects 0 https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/projects
Security 0 https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/security
Insights https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/pulse
Code https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response
Pull requests https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/pulls
Actions https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/actions
Projects https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/projects
Security https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/security
Insights https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/pulse
Brancheshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/branches
Tagshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/tags
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/branches
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/tags
404 Commitshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/commits/master/
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/commits/master/
LICENSEhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/blob/master/LICENSE
LICENSEhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/blob/master/LICENSE
README.mdhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/blob/master/README.md
README.mdhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/blob/master/README.md
README_ch.mdhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/blob/master/README_ch.md
README_ch.mdhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/blob/master/README_ch.md
contributing.mdhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/blob/master/contributing.md
contributing.mdhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/blob/master/contributing.md
READMEhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response
Contributinghttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response
Apache-2.0 licensehttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response
https://github.com/sindresorhus/awesome
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#awesome-incident-response-
DFIRhttp://www.acronymfinder.com/Digital-Forensics%2c-Incident-Response-%28DFIR%29.html
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#contents
Adversary Emulationhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#adversary-emulation
All in one toolshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#all-in-one-tools
Bookshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#books
Communitieshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#communities
Disk Image Creation Toolshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#disk-image-creation-tools
Evidence Collectionhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#evidence-collection
Incident Managementhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#incident-management
Linux Distributionshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#linux-distributions
Linux Evidence Collectionhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#linux-evidence-collection
Log Analysis Toolshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#log-analysis-tools
Memory Analysis Toolshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#memory-analysis-tools
Memory Imaging Toolshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#memory-imaging-tools
OSX Evidence Collectionhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#osx-evidence-collection
Other listshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#other-lists
Other toolshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#other-tools
Playbookshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#playbooks
Process Dump Toolshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#process-dump-tools
Sandboxing/reversing toolshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#sandboxingreversing-tools
Timeline toolshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#timeline-tools
Videoshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#videos
Windows Evidence Collectionhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#windows-evidence-collection
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#ir-tools-collection
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#adversary-emulation
APTSimulatorhttps://github.com/NextronSystems/APTSimulator
Atomic Red Team (ART)https://github.com/redcanaryco/atomic-red-team
AutoTTPhttps://github.com/jymcheong/AutoTTP
Blue Team Training Toolkit (BT3)https://www.bt3.no/
Calderahttps://github.com/mitre/caldera
DumpsterFirehttps://github.com/TryCatchHCF/DumpsterFire
Mettahttps://github.com/uber-common/metta
Network Flight Simulatorhttps://github.com/alphasoc/flightsim
Red Team Automation (RTA)https://github.com/endgameinc/RTA
RedHunt-OShttps://github.com/redhuntlabs/RedHunt-OS
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#all-in-one-tools
Belkasoft Evidence Centerhttps://belkasoft.com/ec
CimSweephttps://github.com/PowerShellMafia/CimSweep
CIRTkithttps://github.com/byt3smith/CIRTKit
Cyber Triagehttp://www.cybertriage.com
Doormanhttps://github.com/mwielgoszewski/doorman
Falcon Orchestratorhttps://github.com/CrowdStrike/falcon-orchestrator
Fleetdmhttps://github.com/fleetdm/fleet
GRR Rapid Responsehttps://github.com/google/grr
PowerGRRhttps://github.com/swisscom/PowerGRR
Limacharliehttps://www.limacharlie.io/
MozDefhttps://github.com/mozilla/MozDef
nightHawkhttps://github.com/biggiesmallsAG/nightHawkResponse
Open Computer Forensics Architecturehttp://sourceforge.net/projects/ocfa/
osqueryhttps://osquery.io/
Redlinehttps://www.fireeye.com/services/freeware/redline.html
The Sleuth Kit & Autopsyhttp://www.sleuthkit.org
TheHivehttps://thehive-project.org/
X-Ways Forensicshttp://www.x-ways.net/forensics/
Zentralhttps://github.com/zentralopensource/zentral
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#books
Applied Incident Responsehttps://www.amazon.com/Applied-Incident-Response-Steve-Anson/dp/1119560268/
DFIR introhttps://medium.com/@sroberts/introduction-to-dfir-d35d5de4c180/
Incident Response & Computer Forensics, Third Editionhttps://www.amazon.com/Incident-Response-Computer-Forensics-Third/dp/0071798684/
Operator Handbook: Red Team + OSINT + Blue Team Referencehttps://www.amazon.com/Operator-Handbook-Team-OSINT-Reference/dp/B085RR67H5/
The Practice of Network Security Monitoring: Understanding Incident Detection and Responsehttp://www.amazon.com/gp/product/1593275099
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#communities
augmentdhttp://augmentd.co/
Sans DFIR mailing listhttps://lists.sans.org/mailman/listinfo/dfir
Slack DFIR channelhttps://dfircommunity.slack.com
Signup herehttps://start.paloaltonetworks.com/join-our-slack-community
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#disk-image-creation-tools
AccessData FTK Imagerhttp://accessdata.com/product-download/?/support/adownloads#FTKImager
Bitscouthttps://github.com/vitaly-kamluk/bitscout
GetData Forensic Imagerhttp://www.forensicimager.com/
Guymagerhttp://guymager.sourceforge.net
Magnet ACQUIREhttps://www.magnetforensics.com/magnet-acquire/
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#evidence-collection
bulk_extractorhttps://github.com/simsong/bulk_extractor
Cold Disk Quick Responsehttps://github.com/rough007/CDQR
CyLRhttps://github.com/orlikoski/CyLR
artifactcollectorhttps://github.com/forensicanalysis/artifactcollector
ir-rescuehttps://github.com/diogo-fernan/ir-rescue
Live Response Collectionhttps://www.brimorlabs.com/tools/
Margarita Shotgunhttps://github.com/ThreatResponse/margaritashotgun
UAChttps://github.com/tclahr/uac
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#incident-management
CyberCPRhttps://www.cybercpr.com
Cyphonhttps://www.cyphon.io/
CORTEX XSOARhttps://www.paloaltonetworks.com/cortex/xsoar
DFIRTrackhttps://github.com/dfirtrack/dfirtrack
Fast Incident Response (FIR)https://github.com/certsocietegenerale/FIR/
KAPEhttps://www.kroll.com/en/services/cyber-risk/investigate-and-respond/kroll-artifact-parser-extractor-kape
RTIRhttps://www.bestpractical.com/rtir/
Sandia Cyber Omni Tracker (SCOT)https://github.com/sandialabs/scot
threat_notehttps://github.com/defpoint/threat_note
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#linux-distributions
The Appliance for Digital Investigation and Analysis (ADIA)https://forensics.cert.org/#ADIA
Computer Aided Investigative Environment (CAINE)http://www.caine-live.net/index.html
CCF-VMhttps://github.com/rough007/CCF-VM
Digital Evidence & Forensics Toolkit (DEFT)http://www.deftlinux.net/
NST - Network Security Toolkithttps://sourceforge.net/projects/nst/files/latest/download?source=files
PALADINhttps://sumuri.com/software/paladin/
Security Onionhttps://github.com/Security-Onion-Solutions/security-onion
SANS Investigative Forensic Toolkit (SIFT) Workstationhttp://digital-forensics.sans.org/community/downloads
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#linux-evidence-collection
FastIR Collector Linuxhttps://github.com/SekoiaLab/Fastir_Collector_Linux
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#log-analysis-tools
AppCompatProcessorhttps://github.com/mbevilacqua/appcompatprocessor
APT Hunterhttps://github.com/ahmedkhlief/APT-Hunter
Event Log Explorerhttps://eventlogxp.com/
Kaspersky CyberTracehttps://support.kaspersky.com/13850
Lorghttps://github.com/jensvoid/lorg
Logdissecthttps://github.com/dogoncouch/logdissect
Sigmahttps://github.com/Neo23x0/sigma
StreamAlerthttps://github.com/airbnb/streamalert
SysmonSearchhttps://github.com/JPCERTCC/SysmonSearch
Zircolitehttps://github.com/wagga40/Zircolite
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#memory-analysis-tools
AVMLhttps://github.com/microsoft/avml
Evolvehttps://github.com/JamesHabben/evolve
inVtero.nethttps://github.com/ShaneK2/inVtero.net
LiMEhttps://github.com/504ensicsLabs/LiME
MalConfScanhttps://github.com/JPCERTCC/MalConfScan
Memoryzehttps://www.fireeye.com/services/freeware/memoryze.html
Memoryze for Machttps://www.fireeye.com/services/freeware/memoryze.html
Rekallhttp://www.rekall-forensic.com/
Responder PROhttp://www.countertack.com/responder-pro
Volatilityhttps://github.com/volatilityfoundation/volatility
VolatilityBothttps://github.com/mkorman90/VolatilityBot
VolDiffhttps://github.com/aim4r/VolDiff
WindowsSCOPEhttp://www.windowsscope.com/windowsscope-cyber-forensics/
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#memory-imaging-tools
Belkasoft Live RAM Capturerhttp://belkasoft.com/ram-capturer
Linux Memory Grabberhttps://github.com/halpomeranz/lmg/
Magnet RAM Capturehttps://www.magnetforensics.com/free-tool-magnet-ram-capture/
OSForensicshttp://www.osforensics.com/
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#osx-evidence-collection
Knockknockhttps://objective-see.com/products/knockknock.html
macOS Artifact Parsing Tool (mac_apt)https://github.com/ydkhatri/mac_apt
OSX Auditorhttps://github.com/jipegit/OSXAuditor
OSX Collectorhttps://github.com/yelp/osxcollector
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#other-lists
Eric Zimmerman Toolshttps://ericzimmerman.github.io/
List of various Security APIshttps://github.com/deralexxx/security-apis
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#other-tools
Cortexhttps://thehive-project.org
Critshttps://crits.github.io/
Diffyhttps://github.com/Netflix-Skunkworks/diffy
domfindhttps://github.com/diogo-fernan/domfind
Fenrirhttps://github.com/Neo23x0/Fenrir
Fileintelhttps://github.com/keithjjones/fileintel
HELKhttps://github.com/Cyb3rWard0g/HELK
Hindsighthttps://github.com/obsidianforensics/hindsight
Hostintelhttps://github.com/keithjjones/hostintel
imagemounterhttps://github.com/ralphje/imagemounter
Kansahttps://github.com/davehull/Kansa/
Muninhttps://github.com/Neo23x0/munin
PowerSponsehttps://github.com/swisscom/PowerSponse
PyaraScannerhttps://github.com/nogoodconfig/pyarascanner
rastrea2rhttps://github.com/rastrea2r/rastrea2r
RaQethttps://raqet.github.io/
Stalkhttps://www.percona.com/doc/percona-toolkit/2.2/pt-stalk.html
Scout2https://nccgroup.github.io/Scout2/
Stenographerhttps://github.com/google/stenographer
sqhunterhttps://github.com/0x4d31/sqhunter
traceroute-circlhttps://github.com/CIRCL/traceroute-circl
X-Ray 2.0https://www.raymond.cc/blog/xray/
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#playbooks
Counteractive Playbookshttps://github.com/counteractive/incident-response-plan-template/tree/master/playbooks
GuardSIght Playbook Battle Cardshttps://github.com/guardsight/gsvsoc_cirt-playbook-battle-cards
IRMhttps://github.com/certsocietegenerale/IRM
IR Workflow Galleryhttps://www.incidentresponse.com/playbooks/
PagerDuty Incident Response Documentationhttps://response.pagerduty.com/
GitHubhttps://github.com/PagerDuty/incident-response-docs
Phantom Community Playbookshttps://github.com/phantomcyber/playbooks
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#process-dump-tools
Microsoft ProcDumphttps://docs.microsoft.com/en-us/sysinternals/downloads/procdump
PMDumphttp://www.ntsecurity.nu/toolbox/pmdump/
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#sandboxingreversing-tools
AMAaaShttps://amaaas.com/index.php/AMAaaS/dashboard
Any Runhttps://app.any.run/
CAPEv2https://github.com/kevoreilly/CAPEv2
Cuckoohttps://github.com/cuckoosandbox/cuckoo
Cuckoo-modifiedhttps://github.com/spender-sandbox/cuckoo-modified
Cuckoo-modified-apihttps://github.com/keithjjones/cuckoo-modified-api
Cutterhttps://github.com/radareorg/cutter
Hybrid-Analysishttps://www.hybrid-analysis.com/
Intezerhttps://analyze.intezer.com/#/
Joe Sandbox (Community)https://www.joesandbox.com/
Mastiffhttps://github.com/KoreLogicSecurity/mastiff
Metadefender Cloudhttps://www.metadefender.com
Radare2https://github.com/radareorg/radare2
Reverse.IThttps://www.reverse.it/
StringSifterhttps://github.com/fireeye/stringsifter
Valkyrie Comodohttps://valkyrie.comodo.com
Viperhttps://github.com/viper-framework/viper
Virustotalhttps://www.virustotal.com
Visualize_Logshttps://github.com/keithjjones/visualize_logs
Yomihttps://yomi.yoroi.company
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#timeline-tools
Aurora Incident Responsehttps://github.com/cyb3rfox/Aurora-Incident-Response
Highlighterhttps://www.fireeye.com/services/freeware/highlighter.html
Morguehttps://github.com/etsy/morgue
Plasohttps://github.com/log2timeline/plaso
Timesketchhttps://github.com/google/timesketch
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#videos
The Future of Incident Responsehttps://www.youtube.com/watch?v=bDcx4UNpKNc
https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#windows-evidence-collection
AChoirhttps://github.com/OMENScan/AChoir
Crowd Responsehttp://www.crowdstrike.com/community-tools/
DFIR ORChttps://dfir-orc.github.io/
GitHubhttps://github.com/DFIR-ORC/dfir-orc
FastIR Collectorhttps://github.com/SekoiaLab/Fastir_Collector
Fibratushttps://github.com/rabbitstack/fibratus
IREChttps://binalyze.com/products/irec-free/
Invoke-LiveResponsehttps://github.com/mgreen27/Invoke-LiveResponse
IOC Finderhttps://www.fireeye.com/services/freeware/ioc-finder.html
IRTriagehttps://github.com/AJMartel/IRTriage
LOKIhttps://github.com/Neo23x0/Loki
MEERKAThttps://github.com/TonyPhipps/Meerkat
Panoramahttps://github.com/AlmCo/Panorama
PowerForensicshttps://github.com/Invoke-IR/PowerForensics
PSReconhttps://github.com/gfoss/PSRecon/
RegRipperhttps://github.com/keydet89/RegRipper3.0
Readme https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#readme-ov-file
Apache-2.0 license https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#Apache-2.0-1-ov-file
Contributing https://patch-diff.githubusercontent.com/CISSP/awesome-incident-response#contributing-ov-file
Please reload this pagehttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response
Activityhttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/activity
2 starshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/stargazers
0 watchinghttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/watchers
0 forkshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/forks
Report repository https://patch-diff.githubusercontent.com/contact/report-content?content_url=https%3A%2F%2Fgithub.com%2FCISSP%2Fawesome-incident-response&report=CISSP+%28user%29
Releaseshttps://patch-diff.githubusercontent.com/CISSP/awesome-incident-response/releases
Packages 0https://patch-diff.githubusercontent.com/users/CISSP/packages?repo_name=awesome-incident-response
https://github.com
Termshttps://docs.github.com/site-policy/github-terms/github-terms-of-service
Privacyhttps://docs.github.com/site-policy/privacy-policies/github-privacy-statement
Securityhttps://github.com/security
Statushttps://www.githubstatus.com/
Communityhttps://github.community/
Docshttps://docs.github.com/
Contacthttps://support.github.com?tags=dotcom-footer

Viewport: width=device-width


URLs of crawlers that visited me.