From 8c932d7d004b64afcf51675704de21bc79b99df8 Mon Sep 17 00:00:00 2001 From: pe3zx Date: Sat, 13 Apr 2019 23:34:03 +0700 Subject: [PATCH] [Tools][DFIR] ufrisk/LeechCore --- README.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/README.md b/README.md index 93707e7..2cd6fa4 100644 --- a/README.md +++ b/README.md @@ -1354,6 +1354,10 @@ _return-to-libc techniques_ Query and report user logons relations from MS Windows Security Events + + ufrisk/LeechCore + LeechCore - Physical Memory Acquisition Library & The LeechAgent Remote Memory Acquisition Agent + Uncoder.io Uncoder.IO is the online translator for SIEM saved searches, filters, queries, API requests, correlation and Sigma rules to help SOC Analysts, Threat Hunters and SIEM Engineers