Dfir
Explore 15 curated tools and resources
LATEST ADDITIONS
mac_apt is a versatile DFIR tool for processing Mac and iOS images, offering extensive artifact extraction capabilities and cross-platform support.
ForensicMiner, Redefine DFIR Automations
A comprehensive guide to digital forensics and incident response, covering incident response frameworks, digital forensic techniques, and threat intelligence.
DFIRTrack is an open source web application focused on incident response for handling major incidents with many affected systems, tracking system status, tasks, and artifacts.
In-depth threat intelligence reports and services providing insights into real-world intrusions, malware analysis, and threat briefs.
Powershell Threat Hunting Module for scanning remote endpoints and collecting comprehensive information.
Modular SOAR implementation in Python for security orchestration, automation, and response.
A DFIR console integrating various cybersecurity tools and frameworks for efficient incident response.
Modern digital forensics and incident response platform with comprehensive tools.
Automated Digital Forensics and Incident Response (DFIR) software for rapid incident response and intrusion investigations.
A reliable end-to-end DFIR solution for boosting cyber incident response and forensics capacity.
A tool collection for filtering and visualizing logon events, designed for experienced DFIR specialists in threat hunting and incident response.
A DFIR Playbook Spec based on YAML for collaborative incident response processes.
Container of 200 Windows EVTX samples for testing detection scripts and training on DFIR.
A cybersecurity challenge where you play the role of an incident response consultant investigating an intrusion at Precision Widgets of North Dakota.
PINNED
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.