Commit Graph

87 Commits

Author SHA1 Message Date
Meir Wahnon
075d2a5796 fix empty raw 2016-01-09 14:21:54 +02:00
Meir Wahnon
fe443b7452 Add Evidence collectors section
for multi platform
2016-01-09 14:16:04 +02:00
Meir Wahnon
b60bd66747 Merge pull request #40 from hslatman/hs_20160108
Fenrir + bulk_extractor
2016-01-09 14:11:22 +02:00
Herman Slatman
a6e31beea3 Stenographer buffered PCAP capture solution added 2016-01-09 11:22:43 +01:00
Herman Slatman
fb442c4a5a bulk_extractor added 2016-01-08 18:58:38 +01:00
Herman Slatman
7198f75f19 Fenrir IOC scanner added 2016-01-08 18:46:00 +01:00
Meir Wahnon
ada4d000f6 Adding Belkasoft Evidence Center 2016-01-07 23:39:50 +02:00
Meir Wahnon
afbf73468a Adding Limacharlie 2016-01-04 09:26:40 +02:00
Herman Slatman
b94e155720 2nd link removed + 'typo' 2015-12-23 10:46:17 +01:00
Herman Slatman
b5c7ececb8 Merging DEFT and DEFT Zero 2015-12-23 10:32:56 +01:00
Herman Slatman
1a8cd130ee DEFT Zero (light DEFT) added 2015-12-21 13:38:55 +01:00
Herman Slatman
91111f0a8e DEFT Linux Distro added 2015-12-21 13:33:41 +01:00
Herman Slatman
50f5574a56 CAINE Live added 2015-12-21 13:30:04 +01:00
Herman Slatman
2b7f5a0bc5 SIFT Workstation added 2015-12-18 13:19:04 +01:00
Meir Wahnon
877119aa70 Merge pull request #36 from hslatman/hs_category_linux_distro
Move Security Onion to Linux Distributions Category + slight descript…
2015-12-17 13:43:02 +02:00
Herman Slatman
39cbfa075d Move Security Onion to Linux Distributions Category + slight description change 2015-12-14 21:44:57 +01:00
MikeDawg
a96753db32 Update Readme.md - Added Triage-IR
Added Triage-IR
2015-12-14 11:40:10 -07:00
Herman Slatman
2c8cb30576 threat_note name changed to real name + slightly more descriptive description 2015-12-14 10:12:48 +01:00
Herman Slatman
b1079e3be9 Envdb added 2015-12-14 10:09:57 +01:00
Herman Slatman
70e14eef1c BriMor Labs Live Response Collection added 2015-12-14 10:07:03 +01:00
Meir Wahnon
dcdbedb963 Remove DumpIT - seems the project is not maintained anymore 2015-12-13 15:04:20 +02:00
Meir Wahnon
fa6043b92d Add threat-note tool 2015-12-12 23:49:52 +02:00
Craig Davison
68813319cc Fix VirusTotal link 2015-12-12 17:38:37 +00:00
Craig Davison
9a88b11d2d Update URLs based on redirects 2015-12-12 17:38:17 +00:00
Rishi Bhargava
4e94b16a2f Editing the Slack community with signup form link and the community link 2015-12-11 22:34:41 -08:00
Scott J Roberts
1f98863a33 osxcollector because it's awesome 2015-12-11 13:24:51 -05:00
CSIRT hackery, Incident Response & Forensics
5c83458abb Added few services and tools 2015-12-10 21:12:28 +03:00
Herman Slatman
32068004e3 Crowd Response direct download replace by generic landing page 2015-12-06 12:26:14 +01:00
Herman Slatman
89e40b8b25 Crowd Response by CrowdStrike Added 2015-12-05 23:24:57 +01:00
Herman Slatman
7f935ab731 Extended Tracert by CIRCL added 2015-12-03 11:56:50 +01:00
Herman Slatman
9206f8ef6d DNS Miner 2015-12-01 18:59:57 +01:00
Meir Wahnon
dc194f6b64 Add Communities part 2015-12-01 11:28:14 +02:00
Herman Slatman
4c6189b2f0 IOC Finder added 2015-11-28 14:29:38 +01:00
Herman Slatman
d7df2064ac Memoryze for Mac 2015-11-26 09:32:30 +01:00
Herman Slatman
bc50301d82 Memoryze added 2015-11-26 09:32:04 +01:00
Meir Wahnon
4e5377ae63 Merge pull request #19 from mikesxrs/Adding-multiple-sections
Adding content to Win forensics and other tools; Adding sections for OSX forensics,Sandboxing/reversing and Books
2015-11-26 09:05:31 +02:00
Mike Worth
9d4088fbb4 Update README.md 2015-11-25 18:01:35 -05:00
mikesxrs
0cdb45e377 Update README.md 2015-11-25 17:16:00 -05:00
mikesxrs
d6a8e61bd8 Adding multiple sections
Added misc information I have found useful

-Highlighter from Fire/Mandiant
-RegRipper Registry tool for win forensics
-OSX Evidence Section
-Sandboxing/reversing tools (both local and online)
-Etherpad For document collaboration 
-Kibana for Big data visualization
-Elastic Search for Big Data searching (think log analysis)
-Book Section with Amazon link (feel free to change)
2015-11-25 15:19:43 -05:00
meir
fb02d03ed6 remove duplicate DumpIt 2015-11-25 22:13:18 +02:00
John Troony
ada6c7fa7e Add DumpIt and Redline
DumpIt is a Windows memory imaging tool. It makes use of win32dd and win64dd. Redline on the other hand, is a all in one tool that can assist in development of a threat assessment profile.
2015-11-25 12:57:21 +00:00
Meir Wahnon
cf5abaef21 Merge pull request #16 from hslatman/hs_20151124
AChoir + DumpIt
2015-11-24 13:20:12 +02:00
Herman Slatman
353fb86e01 AChoir Scripting Platform for Windows IR Utilities 2015-11-24 11:58:29 +01:00
Herman Slatman
bdaf02a07b DumpIt by MoonSols; generic download page 2015-11-24 11:57:20 +01:00
Meir Wahnon
eda079fa60 Add Pt-Stalk tool 2015-11-24 09:42:37 +02:00
Herman Slatman
14054aba6c Change of category title + link 2015-11-22 15:33:34 +01:00
Herman Slatman
f9f0316d19 FastIR Collector added 2015-11-22 15:28:06 +01:00
Herman Slatman
b1d25f7656 Move FECT + PSRecon to Data Collection 2015-11-22 15:27:23 +01:00
Herman Slatman
9fb87f438b Link data collection in contents 2015-11-22 15:26:43 +01:00
Herman Slatman
0a387d4c2c Data Collection category added 2015-11-22 15:25:02 +01:00