A curated list of Site Reliability and Production Engineering resources.
-
Updated
Aug 10, 2020
A curated list of Site Reliability and Production Engineering resources.
List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.
A curated list of tools for incident response
TheHive: a Scalable, Open Source and Free Security Incident Response Platform
Wazuh - The Open Source Security Platform
The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file system data. The library can be incorporated into larger digital forensics tools and the command line tools can be directly used to find evidence.
Monzo's real-time incident response and reporting tool
Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.
PagerDuty's Incident Response Documentation.
FAME Automates Malware Evaluation
A fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team.
IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.
A repository for using osquery for incident detection and response
Cortex: a Powerful Observable Analysis and Active Response Engine
OPCDE Cybersecurity Conference Materials
Open source incident management and response platform.
Digging Deeper....
Intel Owl: analyze files, domains, IPs in multiple ways from a single API at scale
A list of cyber-chef recipes and curated links
FCL (Fileless Command Lines) - Known command lines of fileless malicious executions
Information gathering & website reconnaissance | https://phishstats.info/
PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform
Documentation of TheHive
A Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.
Wazuh - Ruleset
Documentation and Sharing Repository for ThreatPinch Lookup Chrome & Firefox Extension
Sandia Cyber Omni Tracker (SCOT)
Cortex Analyzers Repository
DFIRTrack - The Incident Response Tracking Application
Forensics artefact collection tool for systems running Microsoft Windows
Add a description, image, and links to the incident-response topic page so that developers can more easily learn about it.
To associate your repository with the incident-response topic, visit your repo's landing page and select "manage topics."