Skip to main content
buildradar
Sign in
Topic · incident-response

incident-response

Tracked open-source repos tagged incident-response, sorted by stars.

71 repos
  • APT-Hunter@ahmedkhlief

    APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the sea of windows event logs to decrease the time to uncover suspicious activity

    1,418-1Star change over the last 7 days
  • Watcher@thalesgroup-cert

    Watcher - Open Source AI-powered Cyber Threat Intelligence & Hunting Platform. Developed with Django & React JS.

    1,373+2Star change over the last 7 days
  • ThePhish@emalderson

    ThePhish: an automated phishing email analysis tool

    1,370+2Star change over the last 7 days
  • attackgen@mrwadams

    AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE ATT&CK framework. The tool generates tailored incident response scenarios based on user-selected threat actor groups and your organisation's details.

    1,239+1Star change over the last 7 days
  • wazuh-docker@wazuh

    Wazuh - Docker containers

    1,173+2Star change over the last 7 days
  • intelmq@certtools

    IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.

    1,134+0Star change over the last 7 days
  • Open Source Security Guide. Learn all about Security Standards (FIPS, CIS, FedRAMP, FISMA, etc.), Frameworks, Threat Models, Encryption, and Benchmarks.

    1,109+3Star change over the last 7 days
  • Set of Mindmaps providing a detailed overview of the different #Microsoft auditing capacities for Windows, Exchange, Azure,...

    1,101-1Star change over the last 7 days
  • incident-response-docs@PagerDuty

    PagerDuty's Incident Response Documentation.

    1,051+2Star change over the last 7 days
  • ongrid@ongridio

    An ops AI Agent that understands your infrastructure, finds the root cause, and fixes it — right from Slack, Telegram, Lark or DingTalk.

    1,006+78Star change over the last 7 days
  • fame@certsocietegenerale

    FAME Automates Malware Evaluation

    946+0Star change over the last 7 days
  • CyberThreatHunting@A3sal0n

    A collection of resources for Threat Hunters

    918+1Star change over the last 7 days
  • sectemplates@securitytemplates

    Open source templates you can use to bootstrap your security programs

    915+1Star change over the last 7 days
  • Kuiper@DFIRKuiper

    Digital Forensics Investigation Platform

    905+1Star change over the last 7 days
  • DataSurgeon@Drew-Alleman

    Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text

    904+2Star change over the last 7 days
  • A repository for using osquery for incident detection and response

    901+1Star change over the last 7 days
  • PowerShell Digital Forensics & Incident Response Scripts.

    809+0Star change over the last 7 days
  • A concise, directive, specific, flexible, and free incident response plan template

    804+2Star change over the last 7 days
  • MasterParser@securityjoes

    MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs

    761+0Star change over the last 7 days
  • tenzir@tenzir

    Tenzir is the data pipeline engine for security teams.

    758+1Star change over the last 7 days
  • MemProcFS-Analyzer@LETHAL-FORENSICS

    MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR

    735+1Star change over the last 7 days
  • Hawkeye@mir1ce

    Windows应急响应工具---Hawkeye(鹰眼)。集Windows日志分析,进程扫描,主机信息于一体的综合应急响应分析工具

    709+2Star change over the last 7 days
  • forensictools@cristianzsh

    Collection of forensic tools

    704+2Star change over the last 7 days
  • cyberbro@stanfrbd

    A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

    687+3Star change over the last 7 days
  • Microsoft-Analyzer-Suite@LETHAL-FORENSICS

    A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID

    679+3Star change over the last 7 days
  • ThreatHunting-Keywords@mthcht

    Awesome list of keywords and artifacts for Threat Hunting sessions

    673+0Star change over the last 7 days
  • This repository provides sample templates for security playbooks against various scenarios when using Amazon Web Services.

    672+1Star change over the last 7 days
  • Collection of Event ID ressources useful for Digital Forensics and Incident Response

    663+1Star change over the last 7 days
  • PatrowlManager@Patrowl

    PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform

    638+0Star change over the last 7 days
  • rita@activecm

    Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

    637+7Star change over the last 7 days
← Back to topics