nightHawk Response Logo

nightHawk Response

0
Free
Visit Website

Custom built application for asynchronous forensic data presentation on an Elasticsearch backend, designed to ingest Mandiant Redline 'collections' files, providing flexibility in search, stack, and tagging. The application, accompanied by a fully-fledged GOpher application, allows control over multiple investigations or hundreds of endpoints in a single pane of glass. Version 2.0, ETA March 2020, is under development with features like Docker-based installation, new UI rewrite in React, progressive and resumable triage uploading, Kibana nightHawkResponse Plugin, simplified code base with unit tests, and a simplified development environment CI/CD.

FEATURES

ALTERNATIVES

A forensics tool for tracking USB device artifacts on Linux machines.

A library to access and parse Windows Shortcut File (LNK) format.

A network forensics toolkit that transforms network traffic data into graph-based representations for interactive analysis and visualization through a web interface.

Advanced computer forensics software with efficient features.

Online platform for image steganography analysis

A digital investigation platform for parsing, searching, and visualizing evidences with advanced analytics capabilities.

Automated Mac Forensic Triage Collector

An open source digital forensic tool for processing and analyzing digital evidence with high performance and multiplatform support.