cyberstars
cyberstars / purpose / forensics

Outils pour forensics

Incident response and evidence collection.

88 tools indexed

Direct Memory Access attack toolkit.

ExploitInterceptEndpointsBinaries
CGPL-3.0

OSINT framework for phone numbers.

ReconWeb apps
GoGPL-3.0

Super-timelining for forensics.

AnalyzeEndpointsBinaries
PythonApache-2.0

Live PowerShell disk forensics.

AnalyzeEndpoints
C#MIT

JavaScript deobfuscator.

AnalyzeSource codeWeb apps
JavaScriptApache-2.0

Open SOC distribution.

MonitorAnalyzeNetworksEndpoints
ShellCustom

Hunt usernames across social networks.

ReconWeb apps
PythonMIT

Vendor-agnostic detection rules.

MonitorAnalyzeEndpointsNetworks
PythonDRL-1.1

Open-source IPS, next generation.

MonitorInterceptNetworks
C++GPL-2.0

Find a profile across 1000+ networks.

ReconWeb apps
PythonAGPL-3.0

Windows kernel + user-mode emulator.

AnalyzeBinaries
PythonMIT

High-performance IDS / IPS.

MonitorInterceptNetworks
CGPL-2.0

All-in-one honeypot platform.

MonitorAnalyzeNetworksEndpoints
PythonGPL-3.0

Wireshark on the command line.

InterceptAnalyzeNetworks
CGPL-2.0

Filesystem forensics library.

AnalyzeEndpointsBinaries
CCustom

Open-source SIRP for incident response.

AutomateMonitorEndpointsNetworks
ScalaAGPL-3.0

UAC

Unix-like artifact collector.

AnalyzeMonitorEndpoints
ShellApache-2.0

UPX

Ultimate Packer for eXecutables.

AnalyzeBinaries
C++GPL-2.0

Endpoint visibility and DFIR.

MonitorAnalyzeEndpoints
GoAGPL-3.0

Memory forensics framework.

AnalyzeEndpointsBinaries
PythonVSL

Open-source EDR for Windows.

MonitorAnalyzeEndpoints
GoGPL-3.0

Open-source XDR and SIEM.

MonitorScanEndpointsCloud
CAGPL-3.0