From f6cc376020bf370282435921b4bd293d48656daa Mon Sep 17 00:00:00 2001 From: pe3zx Date: Thu, 2 Jul 2020 14:37:06 +0700 Subject: [PATCH] Add: jimtin/IRCoreForensicFramework --- README.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/README.md b/README.md index 042c37f..271f90f 100644 --- a/README.md +++ b/README.md @@ -677,6 +677,10 @@ This repository is created as an online bookmark for useful links, resources and Invoke-IR/ACE The Automated Collection and Enrichment (ACE) platform is a suite of tools for threat hunters to collect data from many endpoints in a network and automatically enrich the data. The data is collected by running scripts on each computer without installing any software on the target. ACE supports collecting from Windows, macOS, and Linux hosts. + + jimtin/IRCoreForensicFramework + Powershell 7 (Powershell Core)/ C# cross platform forensic framework. Built by incident responders for incident responders. + JPCERTCC/LogonTracer Investigate malicious Windows logon by visualizing and analyzing Windows event log