Incident Response Triage is a scripted collection tool that automatically runs as an administrator in Windows versions, except WinXP, to gather system information valuable to a Forensic Analyst. It collects system information, network information, registry hives, disk information, and dumps memory, providing fast forensics in situations where a full disk image is not feasible.
Common questions about IRTriage including features, pricing, alternatives, and user reviews.
IRTriage is Automated collection tool for incident response triage in Windows systems. It is a Security Operations solution designed to help security teams with Windows, Memory Forensics.
IRTriage is a free Security Operations tool. This makes it accessible for organizations of all sizes, from startups to enterprises. Visit https://github.com/AJMartel/IRTriage/ for download and installation instructions.
Popular alternatives to IRTriage include:
Compare these tools and more at https://cybersectools.com/categories/security-operations
IRTriage is for security teams and organizations that need Windows, Memory Forensics. It's particularly suitable for small to medium-sized teams looking for cost-effective solutions. Other Security Operations tools can be found at https://cybersectools.com/categories/security-operations
A comprehensive incident response tool for Windows computers, providing advanced memory forensics and access to locked systems.
A process scanning tool that detects and dumps malicious implants, shellcodes, hooks, and memory patches in running processes.
Recovers/removes passwords and restrictions from encrypted PDF files.
Password recovery tool for MS Office, WordPerfect, Lotus & other office docs.