Dfir

Explore 23 curated cybersecurity tools, with 17,495+ visitors searching for solutions

FEATURED

Hudson Rock Cybercrime Intelligence Tools Logo

Cybercrime intelligence tools for searching compromised credentials from infostealers

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

NordVPN Logo

VPN service providing encrypted internet connections and privacy protection

Mandos Fractional CISO Services Logo

Fractional CISO services for B2B companies to accelerate sales and compliance

Get Featured

Feature your product and reach thousands of professionals.

Filter by:
ORNA Cyber Incident Response Platform Logo

AI-powered platform for cyber incident response and crisis management

0
Kanvas Logo

An open-source incident response case management tool that provides visualization, threat intelligence lookups, and security framework mapping in a unified workspace.

0
mac_apt Logo

mac_apt is a versatile DFIR tool for processing Mac and iOS images, offering extensive artifact extraction capabilities and cross-platform support.

0
ForensicMiner v1.4 Logo

A PowerShell-based DFIR automation tool that streamlines artifact and evidence collection from Windows machines for digital forensic investigations.

0
Digital Forensics and Incident Response - Third Edition Logo

A comprehensive guide to digital forensics and incident response, covering incident response frameworks, digital forensic techniques, and threat intelligence.

0
SIFT Logo

SIFT is a digital forensics toolkit that provides installation management, task execution, and machine image building capabilities for forensic investigations on Ubuntu systems.

0
PowerGRR Logo

PowerGRR is a PowerShell API client library that automates GRR (Google Rapid Response) operations for digital forensics and incident response across multiple operating systems.

0
DFIRTrack Logo

DFIRTrack is an open source web application focused on incident response for handling major incidents with many affected systems, tracking system status, tasks, and artifacts.

0
The DFIR Report Logo

In-depth threat intelligence reports and services providing insights into real-world intrusions, malware analysis, and threat briefs.

0
Bitscout Logo

Bitscout is a Bash-based live OS constructor tool for building customizable forensic environments used in remote system triage, malware hunting, and digital forensics investigations.

0
PSHunt Logo

Powershell Threat Hunting Module for scanning remote endpoints and collecting comprehensive information.

0
Penguin OS Forensic (or Flight) Recorder (POFR) Logo

POFR is a Linux forensic data collection system that captures process execution, file access, and network activity for incident response and compliance analysis.

0
IRIS-SOAR Logo

IRIS-SOAR is a Python-based modular SOAR platform that automates security incident response workflows and integrates with DFIR-IRIS for enhanced digital forensics operations.

0
CIRTKit Logo

CIRTKit is a DFIR console built on the Viper Framework that integrates various forensic tools and provides modules for packet analysis, memory analysis, and automated incident response workflows.

0
Binalyze AIR Logo

Modern digital forensics and incident response platform with comprehensive tools.

0
Cyber Triage Logo

Automated Digital Forensics and Incident Response (DFIR) software for rapid incident response and intrusion investigations.

0
Belkasoft X Forensic Logo

A reliable end-to-end DFIR solution for boosting cyber incident response and forensics capacity.

0
Blauhaunt Logo

A tool collection for filtering and visualizing logon events, designed for experienced DFIR specialists in threat hunting and incident response.

0
Diffy (DEPRECATED) Logo

A deprecated digital forensics tool by Netflix that helped investigators scope compromises across AWS cloud instances by identifying behavioral differences and outliers during security incidents.

0
COPS - Collaborative Open Playbook Standard Logo

COPS is a YAML-based schema standard for creating collaborative DFIR playbooks that provide structured guidance for incident response processes.

0
Windows EVTX Samples [200 EVTX examples] Logo

Container of 200 Windows EVTX samples for testing detection scripts and training on DFIR.

0
DFIR CTF: Precision Widgets of North Dakota Intrusion Logo

A cybersecurity challenge where you play the role of an incident response consultant investigating an intrusion at Precision Widgets of North Dakota.

0
msticpy Logo

msticpy is a Python library for InfoSec investigation and threat hunting in Jupyter Notebooks, providing data querying, threat intelligence enrichment, analysis capabilities, and interactive visualizations.

0