nightHawk Response Logo

nightHawk Response

0
Free
Updated 11 March 2025
Visit Website

Custom built application for asynchronous forensic data presentation on an Elasticsearch backend, designed to ingest Mandiant Redline 'collections' files, providing flexibility in search, stack, and tagging. The application, accompanied by a fully-fledged GOpher application, allows control over multiple investigations or hundreds of endpoints in a single pane of glass. Version 2.0, ETA March 2020, is under development with features like Docker-based installation, new UI rewrite in React, progressive and resumable triage uploading, Kibana nightHawkResponse Plugin, simplified code base with unit tests, and a simplified development environment CI/CD.

FEATURES

SIMILAR TOOLS

A digital investigation platform for parsing, searching, and visualizing evidences with advanced analytics capabilities.

MalConfScan is a Volatility plugin for extracting configuration data of known malware and analyzing memory images.

A reconnaissance tool for GitHub organizations

A library and tools to access and manipulate VMware Virtual Disk (VMDK) files.

A binary analysis platform for analyzing binary programs

A digital artifact extraction framework for extracting data from volatile memory (RAM) samples, providing visibility into the runtime state of a system.

WinSearchDBAnalyzer can parse and recover records in Windows.edb, providing detailed insights into various data types.

Hoarder is a tool to collect and parse windows artifacts.

A library and tools for accessing and analyzing Linux Logical Volume Manager (LVM) volume system format.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

VAT: NL005301434B12

Copyright © 2025 - All rights reserved