List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.
-
Updated
Jul 7, 2026 - Shell
List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.
A curated list of tools for incident response
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
⭐️ A curated list of awesome forensic analysis tools and resources
Automate the creation of a lab environment complete with security tooling and logging best practices
IntelOwl: manage your Threat Intelligence at scale
A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient.
TheHive is a Collaborative Case Management Platform, now distributed as a commercial version
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
Investigate malicious Windows logon by visualizing and analyzing Windows event log
Security Onion 16.04 - Linux distro for threat hunting, enterprise security monitoring, and log management
Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database Forensics.
A repository of sysmon configuration modules
YARA signature and IOC database for my scanners and tools
Windows Events Attack Samples
A list of cyber-chef recipes and curated links
To associate your repository with the dfir topic, visit your repo's landing page and select "manage topics."