1.2 KiB
1.2 KiB
List of useful tools and guides
Cane
- Computer Forensics Linux Live Distro
- Friendly graphical user interface
- Link: https://www.caine-live.net/index.html
Security Onion 2
- Threat hunting
- Security monitoring
- Log management
- Git repo: https://git.csec.ba/CSEC_PUBLIC/securityonion
SIFT Workstation
- SANS incident response and forencisc toolset
- Link: https://www.sans.org/tools/sift-workstation/
Wireshark
- Network protocol and traffic analyser
- Link: https://www.wireshark.org/
Photo Rec
- Data recovery tool
- Link: https://www.cgsecurity.org/wiki/PhotoRec
Readline
- Redline®, FireEye’s premier free endpoint security tool, provides host investigative capabilities to users to find signs of malicious activity through memory and file analysis and the development of a threat assessment profile. Use Redline to collect, analyze and filter endpoint data and perform IOC analysis and hit review. In addition, users of FireEye’s Endpoint Security (HX) can open triage collections directly in Redline for in-depth analysis, allowing the user to establish the timeline and scope of an incident. This app runs on Windows only.
- Link: https://fireeye.market/apps/211364