
Simple-Live-Data-Collection
Client-server tool for live data collection during incident response. Admin sends requests to clients to gather system information for forensic…

Client-server tool for live data collection during incident response. Admin sends requests to clients to gather system information for forensic…

This script checks the Citrix Netscaler if it has been compromised by CVE-2019-19781 attacks and collects all file system information

Incident Response Triage - Windows Evidence Collection for Forensic Analysis

Advanced framework for extracting digital artifacts from volatile memory (RAM) samples, enabling deep forensic analysis of system runtime state…

Arkime is an open source, large scale, full packet capturing, indexing, and database system.

Generates YARA rules from installed software on a running OS to baseline known software and find similar installations across digital forensic…