3 links tagged with all of: incident-response + open-source
Click any tag below to further narrow down your results
Links
UAC is an incident response tool for collecting artifacts from various Unix-like systems. It automates data collection for forensic investigations, compliance checks, and more, using customizable YAML profiles without requiring installation. The tool supports diverse environments, including IoT devices and NAS systems.
n6 (Network Security Incident eXchange) is a system designed for collecting, managing, and distributing security information through a REST API and web interface for authorized users. Developed by CERT Polska, it facilitates access to data on network threats and incidents. The software is open-source and distributed under the GNU Affero General Public License.
Gulp is a versatile log processing tool designed for efficient incident response, featuring a high-speed multiprocessing engine, data ingestion from various sources, and compatibility with OpenSearch and ECS. It supports Sigma rules for querying and includes collaborative features for team incidents, all built with Python for easy integration. Gulp is scalable and adaptable to growing teams and data needs.