hackjalstead / IR-Incident-Event-Timeline

Excel-based Event Timeline with customizable legend for Artefacts, Assets and Activity Type

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

IR-Incident-Event-Timeline

Excel-based Event Timeline with customizable legend for Artefacts, Assets and Activity Type

This custom Incident Timeline aims to -

  • Aid IR teams with investigational timelines
  • Auto-filling drop-down menus for common incident details ensuring uniformity
  • Contains customisable Legend for incident details such as Activity Type, Assets & Artefacts
  • Responders can edit the legend to suit the needs of each investigation
  • Global or specific filtering inc. Mitre ATT&CK
  • Useful onsite when Lab resources are unavailable
  • Incident details currently based off various SANS methodologies
  • Contains VBA to populate & update combo boxes

Incident Timeline

Input incident details in here, the worksheet contains data validated and free text fields

IR-Timeline

Incident Legend

Customise one or all items in the legend to appear in the drop down menus

IR-Legend

About

Excel-based Event Timeline with customizable legend for Artefacts, Assets and Activity Type