Top 127 dfir open source projects

TA-Sysmon-deploy
Deploy and maintain Symon through the Splunk Deployment Sever
TheHiveHooks
This is a python tool aiming to make using TheHive webhooks easier.
pyarascanner
A simple many-rules to many-files YARA scanner for incident response or malware zoos.
EventTranscript.db-Research
A repo for centralizing ongoing research on the new Windows 10/11 DFIR artifact, EventTranscript.db.
CCXDigger
The CyberCX Digger project is designed to help Australian organisations determine if they have been impacted by certain high profile cyber security incidents. Digger provides threat hunting functionality packaged in a simple-to-use tool, allowing users to detect certain attacker activities; all for free.
121-127 of 127 dfir projects