Python tool development project to help detect and synthesize the behavior of malicious code, especially fileless malware during the CA process.
-
Updated
Apr 16, 2024 - Python
Python tool development project to help detect and synthesize the behavior of malicious code, especially fileless malware during the CA process.
A modular Windows DFIR artifact collection tool written in Go for incident response and response triage. Supports memory, NTFS, registry, event logs, and more.
Add a description, image, and links to the ir-tool topic page so that developers can more easily learn about it.
To associate your repository with the ir-tool topic, visit your repo's landing page and select "manage topics."