meta data for this page
This is an old revision of the document!
Tools
SIEM
Network
IR
-
- Parse Windows Event Logs
-
- Yet another registry utility
-
- USB parser
-
- Analysis of file systems and images
Data Collection
-
- Collect artefacts on Win, Linux and MacOS
-
- Unix Artefacts Collector
-
- ntfswalk, gena (gui)
- Scripts