From 50f5574a5634aa2bf305822f4a2484aa9a8bb66e Mon Sep 17 00:00:00 2001 From: Herman Slatman Date: Mon, 21 Dec 2015 13:30:04 +0100 Subject: [PATCH 1/5] CAINE Live added --- README.md | 1 + 1 file changed, 1 insertion(+) diff --git a/README.md b/README.md index b833a31..ff546fd 100644 --- a/README.md +++ b/README.md @@ -98,6 +98,7 @@ A curated list of tools and resources for security incident response, aimed to h ### Linux Distributions * [Security Onion](https://github.com/Security-Onion-Solutions/security-onion) - Security Onion is a special Linux distro aimed at network security monitoring featuring advanced analysis tools. * [SIFT Workstation](http://digital-forensics.sans.org/community/downloads) - The SANS Investigative Forensic Toolkit (SIFT) Workstation demonstrates that advanced incident response capabilities and deep dive digital forensic techniques to intrusions can be accomplished using cutting-edge open-source tools that are freely available and frequently updated. +* [CAINE](http://www.caine-live.net/index.html) - The Computer Aided INvestigative Environment (CAINE) contains numerous tools that help investigators during their analysis, including forensic evidence collection. ### Other Tools * [Hindsight](https://github.com/obsidianforensics/hindsight) - Internet history forensics for Google Chrome/Chromium From 91111f0a8eee8d9e7d80f76039de0eabf377e975 Mon Sep 17 00:00:00 2001 From: Herman Slatman Date: Mon, 21 Dec 2015 13:33:41 +0100 Subject: [PATCH 2/5] DEFT Linux Distro added --- README.md | 1 + 1 file changed, 1 insertion(+) diff --git a/README.md b/README.md index ff546fd..1a11f72 100644 --- a/README.md +++ b/README.md @@ -99,6 +99,7 @@ A curated list of tools and resources for security incident response, aimed to h * [Security Onion](https://github.com/Security-Onion-Solutions/security-onion) - Security Onion is a special Linux distro aimed at network security monitoring featuring advanced analysis tools. * [SIFT Workstation](http://digital-forensics.sans.org/community/downloads) - The SANS Investigative Forensic Toolkit (SIFT) Workstation demonstrates that advanced incident response capabilities and deep dive digital forensic techniques to intrusions can be accomplished using cutting-edge open-source tools that are freely available and frequently updated. * [CAINE](http://www.caine-live.net/index.html) - The Computer Aided INvestigative Environment (CAINE) contains numerous tools that help investigators during their analysis, including forensic evidence collection. +* [DEFT](http://www.deftlinux.net/) - The Digital Evidence & Forensics Toolkit (DEFT) is a Linux distribution made for computer forensic evidence collection. It comes bundled with the Digital Advanced Response Toolkit (DART) for Windows. ### Other Tools * [Hindsight](https://github.com/obsidianforensics/hindsight) - Internet history forensics for Google Chrome/Chromium From 1a8cd130ee57e39892d6fe578fff6e01fde0dd81 Mon Sep 17 00:00:00 2001 From: Herman Slatman Date: Mon, 21 Dec 2015 13:38:55 +0100 Subject: [PATCH 3/5] DEFT Zero (light DEFT) added --- README.md | 1 + 1 file changed, 1 insertion(+) diff --git a/README.md b/README.md index 1a11f72..8f1cc88 100644 --- a/README.md +++ b/README.md @@ -100,6 +100,7 @@ A curated list of tools and resources for security incident response, aimed to h * [SIFT Workstation](http://digital-forensics.sans.org/community/downloads) - The SANS Investigative Forensic Toolkit (SIFT) Workstation demonstrates that advanced incident response capabilities and deep dive digital forensic techniques to intrusions can be accomplished using cutting-edge open-source tools that are freely available and frequently updated. * [CAINE](http://www.caine-live.net/index.html) - The Computer Aided INvestigative Environment (CAINE) contains numerous tools that help investigators during their analysis, including forensic evidence collection. * [DEFT](http://www.deftlinux.net/) - The Digital Evidence & Forensics Toolkit (DEFT) is a Linux distribution made for computer forensic evidence collection. It comes bundled with the Digital Advanced Response Toolkit (DART) for Windows. +* [DEFT Zero](http://www.deftlinux.net/) - DEFT Zero is a light edition of DEFT, focused primarily on forensically sound evidence collection. ### Other Tools * [Hindsight](https://github.com/obsidianforensics/hindsight) - Internet history forensics for Google Chrome/Chromium From b5c7ececb8ea57c85f675cd2f982040e8186d65d Mon Sep 17 00:00:00 2001 From: Herman Slatman Date: Wed, 23 Dec 2015 10:32:56 +0100 Subject: [PATCH 4/5] Merging DEFT and DEFT Zero --- README.md | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/README.md b/README.md index 8f1cc88..c3855ed 100644 --- a/README.md +++ b/README.md @@ -99,8 +99,7 @@ A curated list of tools and resources for security incident response, aimed to h * [Security Onion](https://github.com/Security-Onion-Solutions/security-onion) - Security Onion is a special Linux distro aimed at network security monitoring featuring advanced analysis tools. * [SIFT Workstation](http://digital-forensics.sans.org/community/downloads) - The SANS Investigative Forensic Toolkit (SIFT) Workstation demonstrates that advanced incident response capabilities and deep dive digital forensic techniques to intrusions can be accomplished using cutting-edge open-source tools that are freely available and frequently updated. * [CAINE](http://www.caine-live.net/index.html) - The Computer Aided INvestigative Environment (CAINE) contains numerous tools that help investigators during their analysis, including forensic evidence collection. -* [DEFT](http://www.deftlinux.net/) - The Digital Evidence & Forensics Toolkit (DEFT) is a Linux distribution made for computer forensic evidence collection. It comes bundled with the Digital Advanced Response Toolkit (DART) for Windows. -* [DEFT Zero](http://www.deftlinux.net/) - DEFT Zero is a light edition of DEFT, focused primarily on forensically sound evidence collection. +* [DEFT](http://www.deftlinux.net/) - The Digital Evidence & Forensics Toolkit (DEFT) is a Linux distribution made for computer forensic evidence collection. It comes bundled with the Digital Advanced Response Toolkit (DART) for Windows. A light version of DEFT, called [DEFT Zero](http://www.deftlinux.net/), is also available, which is focused primarily on forensically sound evidence collection. ### Other Tools * [Hindsight](https://github.com/obsidianforensics/hindsight) - Internet history forensics for Google Chrome/Chromium From b94e15572042eb436cb99db98feb264e12366012 Mon Sep 17 00:00:00 2001 From: Herman Slatman Date: Wed, 23 Dec 2015 10:46:17 +0100 Subject: [PATCH 5/5] 2nd link removed + 'typo' --- README.md | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/README.md b/README.md index c3855ed..198b3af 100644 --- a/README.md +++ b/README.md @@ -98,8 +98,8 @@ A curated list of tools and resources for security incident response, aimed to h ### Linux Distributions * [Security Onion](https://github.com/Security-Onion-Solutions/security-onion) - Security Onion is a special Linux distro aimed at network security monitoring featuring advanced analysis tools. * [SIFT Workstation](http://digital-forensics.sans.org/community/downloads) - The SANS Investigative Forensic Toolkit (SIFT) Workstation demonstrates that advanced incident response capabilities and deep dive digital forensic techniques to intrusions can be accomplished using cutting-edge open-source tools that are freely available and frequently updated. -* [CAINE](http://www.caine-live.net/index.html) - The Computer Aided INvestigative Environment (CAINE) contains numerous tools that help investigators during their analysis, including forensic evidence collection. -* [DEFT](http://www.deftlinux.net/) - The Digital Evidence & Forensics Toolkit (DEFT) is a Linux distribution made for computer forensic evidence collection. It comes bundled with the Digital Advanced Response Toolkit (DART) for Windows. A light version of DEFT, called [DEFT Zero](http://www.deftlinux.net/), is also available, which is focused primarily on forensically sound evidence collection. +* [CAINE](http://www.caine-live.net/index.html) - The Computer Aided Investigative Environment (CAINE) contains numerous tools that help investigators during their analysis, including forensic evidence collection. +* [DEFT](http://www.deftlinux.net/) - The Digital Evidence & Forensics Toolkit (DEFT) is a Linux distribution made for computer forensic evidence collection. It comes bundled with the Digital Advanced Response Toolkit (DART) for Windows. A light version of DEFT, called DEFT Zero, is also available, which is focused primarily on forensically sound evidence collection. ### Other Tools * [Hindsight](https://github.com/obsidianforensics/hindsight) - Internet history forensics for Google Chrome/Chromium