GRR Rapid Response is an incident response framework focused on remote live forensics. GRR is a python client (agent) that is installed on target systems, and python server infrastructure that can manage and talk to clients. Documentation: Please visit our documentation website if you want to know more about GRR. Contact Us: GitHub issues - github.com/google/grr/issues, GRR Users mailing list, Follow us on Twitter for announcements of GRR user meetups. We use a Gitter chat room during meetups. Screenshots
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Repository of templates for Ayehu's workflows with the ability to design, execute, and automate IT and business processes.
A human risk management platform that identifies, assesses, and mitigates security risks associated with employee behavior through monitoring, targeted interventions, and comprehensive reporting.
A Sysmon configuration file template with detailed explanations and tutorial-like features.
Companion repository for deploying osquery in a production environment with tailored query packs.
A System for Abuse- and Incident Handling with log file analysis capabilities.
An automation platform with community support and documentation for easy development.
A web collaborative platform for incident responders to share technical details during investigations, shipped in Docker containers for easy installation and upgrades.
A public incident response process documentation used at PagerDuty
PINNED
NordVPN
NordVPN is a commercial VPN service that encrypts internet connections and hides IP addresses through a global network of servers, featuring integrated threat protection and multi-device support.

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.