diff --git a/README.md b/README.md index 042c37f..271f90f 100644 --- a/README.md +++ b/README.md @@ -677,6 +677,10 @@ This repository is created as an online bookmark for useful links, resources and Invoke-IR/ACE The Automated Collection and Enrichment (ACE) platform is a suite of tools for threat hunters to collect data from many endpoints in a network and automatically enrich the data. The data is collected by running scripts on each computer without installing any software on the target. ACE supports collecting from Windows, macOS, and Linux hosts. + + jimtin/IRCoreForensicFramework + Powershell 7 (Powershell Core)/ C# cross platform forensic framework. Built by incident responders for incident responders. + JPCERTCC/LogonTracer Investigate malicious Windows logon by visualizing and analyzing Windows event log