opensourcesec / CIRTKit

Tools for the Computer Incident Response Team :computer:

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

CIRTKit

One DFIR console to rule them all. Built on top of the Viper Framework


Build Status

Documentation

  • Please see the wiki for more information about CIRTKit and documentation

Roadmap

Future integrations

  • Bit9
  • Palo Alto Networks
  • EnCase/FTK

Future modules

  • Packet Analysis (possibly Dshell)
  • Javascript Unpacking/Deobfuscation
  • Volatility Memory Analysis Framework
  • Hex Viewer/Editor

Scripting Framework

  • Automation is key. Scripting is key to DFIR, thus needs to be available in CIRTKit

About

Tools for the Computer Incident Response Team :computer:

License:MIT License


Languages

Language:Python 100.0%