Dfir

Explore 50 curated cybersecurity tools, with 15,216 visitors searching for solutions

LMNTRIX XDR Logo

XDR platform with MDR and SOCaaS for threat detection and response

0
Bridewell Cyber Security Logo

MSSP providing cyber security services for Critical National Infrastructure

0
LevelBlue Cyber Advisory Logo

Managed detection and response platform combining XDR and incident response

0
ORNA End-to-End AI Cyber Incident Response Platform Logo

AI-powered cyber incident response platform for training, orchestration & mgmt

0
Kanvas Logo

An open-source incident response case management tool that provides visualization, threat intelligence lookups, and security framework mapping in a unified workspace.

0
mac_apt Logo

mac_apt is a versatile DFIR tool for processing Mac and iOS images, offering extensive artifact extraction capabilities and cross-platform support.

0
ForensicMiner v1.4 Logo

A PowerShell-based DFIR automation tool that streamlines artifact and evidence collection from Windows machines for digital forensic investigations.

0
Digital Forensics and Incident Response - Third Edition Logo

A comprehensive guide to digital forensics and incident response, covering incident response frameworks, digital forensic techniques, and threat intelligence.

0
SIFT Logo

SIFT is a digital forensics toolkit that provides installation management, task execution, and machine image building capabilities for forensic investigations on Ubuntu systems.

0
PowerGRR Logo

PowerGRR is a PowerShell API client library that automates GRR (Google Rapid Response) operations for digital forensics and incident response across multiple operating systems.

0
DFIRTrack Logo

DFIRTrack is an open source web application focused on incident response for handling major incidents with many affected systems, tracking system status, tasks, and artifacts.

0
The DFIR Report Logo

In-depth threat intelligence reports and services providing insights into real-world intrusions, malware analysis, and threat briefs.

0
Bitscout Logo

Bitscout is a Bash-based live OS constructor tool for building customizable forensic environments used in remote system triage, malware hunting, and digital forensics investigations.

0
PSHunt Logo

Powershell Threat Hunting Module for scanning remote endpoints and collecting comprehensive information.

0
Penguin OS Forensic (or Flight) Recorder (POFR) Logo

POFR is a Linux forensic data collection system that captures process execution, file access, and network activity for incident response and compliance analysis.

0
IRIS-SOAR Logo

IRIS-SOAR is a Python-based modular SOAR platform that automates security incident response workflows and integrates with DFIR-IRIS for enhanced digital forensics operations.

0
CIRTKit Logo

CIRTKit is a DFIR console built on the Viper Framework that integrates various forensic tools and provides modules for packet analysis, memory analysis, and automated incident response workflows.

0
Binalyze AIR Logo

Modern digital forensics and incident response platform with comprehensive tools.

0
Cyber Triage Logo

Automated Digital Forensics and Incident Response (DFIR) software for rapid incident response and intrusion investigations.

0
Belkasoft X Forensic Logo

A reliable end-to-end DFIR solution for boosting cyber incident response and forensics capacity.

0
Blauhaunt Logo

A tool collection for filtering and visualizing logon events, designed for experienced DFIR specialists in threat hunting and incident response.

0
Diffy (DEPRECATED) Logo

A deprecated digital forensics tool by Netflix that helped investigators scope compromises across AWS cloud instances by identifying behavioral differences and outliers during security incidents.

0
COPS - Collaborative Open Playbook Standard Logo

COPS is a YAML-based schema standard for creating collaborative DFIR playbooks that provide structured guidance for incident response processes.

0
Windows EVTX Samples [200 EVTX examples] Logo

Container of 200 Windows EVTX samples for testing detection scripts and training on DFIR.

0