
TuxResponse
Automated Linux incident response script with live triage, memory acquisition (LiME), disk imaging, YARA scanning, and HTML report generation.

Automated Linux incident response script with live triage, memory acquisition (LiME), disk imaging, YARA scanning, and HTML report generation.

Incident Response collection and processing scripts with automated reporting scripts

Cortex: a Powerful Observable Analysis and Active Response Engine


Cross-platform interactive shell for Microsoft Defender for Endpoint Live Response

Easy-to-use live forensics toolbox for Linux endpoints

Scripts to triage compromised systems (Linux, ESXi, FreeBSD/NetScaler)

Detection Script for MongoBleed Exploitation

PowerShell tool that extracts Active Directory artifacts via LDAP or ADWS and generates Excel reports for auditing, DFIR, and penetration testing.

Cryptographic terminal forensics and session replay for AI agents. Tracks, signs, and audits every command with provenance labels, replayable…

Detect CVE-2026-45321 Mini Shai-Hulud supply chain compromise — scans for 170 npm + 2 PyPI poisoned packages across TanStack, Mistral AI, UiPath,…

A simple script to remove Log4J JndiLookup.class from jars in a given directory, to temporarily protect from CVE-2021-45046 and CVE-2021-44228.

A Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.