awesome-repositories.com
المدونة
MCP
awesome-repositories.com

اكتشف أفضل مستودعات المصادر المفتوحة باستخدام بحث مدعوم بالذكاء الاصطناعي.

استكشفعمليات بحث منسقةبدائل مفتوحة المصدربرمجيات ذاتية الاستضافةالمدونةخريطة الموقع
المشروعخادم MCPحولكيفية ترتيب النتائجالصحافة
قانونيالخصوصيةالشروط
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to tclahr/uac

Open-source alternatives to Tclahr Uac

30 open-source projects similar to tclahr/uac, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Tclahr Uac alternative.

  • orlikoski/cylrالصورة الرمزية لـ orlikoski

    orlikoski/CyLR

    727عرض على GitHub↗

    CyLR - Live Response Collection Tool

    C#
    عرض على GitHub↗727
  • velocidex/velociraptorالصورة الرمزية لـ Velocidex

    Velocidex/velociraptor

    3,769عرض على GitHub↗

    Velociraptor is a digital forensics and incident response platform, endpoint detection and response system, and visibility tool. It provides a query engine and remote forensic collector used to hunt for indicators of compromise and perform triage across a fleet of hosts. The system is distinguished by its specialized query language for interrogating host state and parsing binary files. It features a notebook environment that combines markdown documentation with executable query cells to standardize investigative workflows and enable collaborative reporting. The platform covers a wide range o

    Godigital-forensicsendpoint-discoveryendpoint-protection
    عرض على GitHub↗3,769
  • google/grrالصورة الرمزية لـ google

    google/grr

    5,074عرض على GitHub↗

    GRR is a distributed incident response platform and asynchronous forensic task orchestrator. It functions as a remote forensics framework designed to collect and analyze volatile data, system memory, and digital artifacts from remote hosts during security incident response. The system operates as a remote endpoint triage system, utilizing a coordinated architecture to manage a fleet of agents. It enables the execution of investigative tasks across multiple systems, allowing for the search of files and registries across a large fleet of machines to identify compromised hosts. The platform pro

    Python
    عرض على GitHub↗5,074
  • forensicartifacts/artifactsالصورة الرمزية لـ ForensicArtifacts

    ForensicArtifacts/artifacts

    1,240عرض على GitHub↗

    Digital Forensics artifact repository

    Python
    عرض على GitHub↗1,240

بحث بالذكاء الاصطناعي

استكشف المزيد من المستودعات الرائعة

صف ما تحتاجه بلغة بسيطة — وسيقوم الذكاء الاصطناعي بترتيب آلاف المشاريع مفتوحة المصدر المنسقة حسب الصلة.

Find more with AI search
  • diogo-fernan/ir-rescueالصورة الرمزية لـ diogo-fernan

    diogo-fernan/ir-rescue

    489عرض على GitHub↗

    A Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.

    Batchfile
    عرض على GitHub↗489
  • volatilityfoundation/volatilityالصورة الرمزية لـ volatilityfoundation

    volatilityfoundation/volatility

    7,971عرض على GitHub↗

    Volatility is a memory forensics framework and digital forensics tool designed to extract and analyze evidence from volatile computer memory dumps. It functions as a memory dump parser and analysis platform used to identify running processes, network connections, and loaded modules from a system RAM capture. The framework enables the reconstruction of system state to uncover malicious activity, such as rootkits and injected code, during malware incident response and threat hunting. It provides capabilities for digital forensic investigations to detect unauthorized access and indicators of com

    Pythonmalwarememorypython
    عرض على GitHub↗7,971
  • rough007/cdqrالصورة الرمزية لـ rough007

    rough007/CDQR

    345عرض على GitHub↗

    The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted drives and extracted artifacts from Windows, Linux, MacOS, and Android devices

    Python
    عرض على GitHub↗345
  • osquery/osqueryالصورة الرمزية لـ osquery

    osquery/osquery

    23,113عرض على GitHub↗

    Osquery is a unified endpoint monitoring framework that exposes operating system internals as relational tables. By representing hardware, network, and process activity as structured data, it allows users to retrieve system state and configuration information using standard SQL syntax. The system distinguishes itself through a cross-platform abstraction layer that normalizes disparate operating system interfaces into a consistent schema across Windows, macOS, and Linux. It supports both interactive local analysis via a command-line shell and distributed fleet orchestration, where recurring qu

    C++hacktoberfestintrusion-detectionmonitoring
    عرض على GitHub↗23,113
  • wagga40/zircoliteالصورة الرمزية لـ wagga40

    wagga40/Zircolite

    782عرض على GitHub↗
    Pythonauditddetectionevtx
    عرض على GitHub↗782
  • invoke-ir/powerforensicsالصورة الرمزية لـ Invoke-IR

    Invoke-IR/PowerForensics

    1,435عرض على GitHub↗

    PowerForensics provides an all in one platform for live disk forensic analysis

    C#
    عرض على GitHub↗1,435
  • microsoft/avmlالصورة الرمزية لـ microsoft

    microsoft/avml

    1,098عرض على GitHub↗

    AVML - Acquire Volatile Memory for Linux

    Rust
    عرض على GitHub↗1,098
  • mozilla/migالصورة الرمزية لـ mozilla

    mozilla/mig

    1,202عرض على GitHub↗

    Distributed & real time digital forensics at the speed of the cloud

    Go
    عرض على GitHub↗1,202
  • philhagen/sof-elkالصورة الرمزية لـ philhagen

    philhagen/sof-elk

    1,740عرض على GitHub↗

    This repository contains the configuration and support files for the SOF-ELK® VM Appliance.

    Ruby
    عرض على GitHub↗1,740
  • threatresponse/margaritashotgunالصورة الرمزية لـ ThreatResponse

    ThreatResponse/margaritashotgun

    253عرض على GitHub↗

    Remote Memory Acquisition Tool

    Python
    عرض على GitHub↗253
  • google/timesketchالصورة الرمزية لـ google

    google/timesketch

    3,355عرض على GitHub↗

    Collaborative forensic timeline analysis

    Python
    عرض على GitHub↗3,355
  • jpcertcc/logontracerالصورة الرمزية لـ JPCERTCC

    JPCERTCC/LogonTracer

    3,136عرض على GitHub↗

    LogonTracer is a security auditing tool designed for logon analysis and forensic log auditing. It functions as a dockerized security auditor that utilizes a security event graph database to map account names and network addresses, allowing for the visualization of complex system compromise patterns and authentication paths. The system features a Sigma detection engine that scans imported event logs against standardized rule sets to identify known malicious activity. It also includes an anomalous behavior detector that applies statistical analysis, graph algorithms, and hidden Markov models to

    Pythonactive-directoryblueteamdfir
    عرض على GitHub↗3,136
  • forensicanalysis/artifactcollectorالصورة الرمزية لـ forensicanalysis

    forensicanalysis/artifactcollector

    308عرض على GitHub↗

    🧭 The artifactcollector is a customizable agent to collect forensic artifacts on any Windows, macOS or Linux system

    Go
    عرض على GitHub↗308
  • fox-it/acquireالصورة الرمزية لـ fox-it

    fox-it/acquire

    121عرض على GitHub↗

    acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.

    Python
    عرض على GitHub↗121
  • dfirkuiper/kuiperالصورة الرمزية لـ DFIRKuiper

    DFIRKuiper/Kuiper

    893عرض على GitHub↗

    Digital Forensics Investigation Platform

    JavaScript
    عرض على GitHub↗893
  • google/rekallالصورة الرمزية لـ google

    google/rekall

    1,998عرض على GitHub↗

    Rekall Memory Forensic Framework

    Python
    عرض على GitHub↗1,998
  • google/turbiniaالصورة الرمزية لـ google

    google/turbinia

    783عرض على GitHub↗
    Pythonclouddfirforensics
    عرض على GitHub↗783
  • intezer/linux-explorerالصورة الرمزية لـ intezer

    intezer/linux-explorer

    406عرض على GitHub↗

    Easy-to-use live forensics toolbox for Linux endpoints

    HTML
    عرض على GitHub↗406
  • markbaggett/srum-dumpM

    MarkBaggett/srum-dump

    0عرض على GitHub↗

    SRUM-DUMP extracts data from the System Resource Utilization Management (SRUM) database and generates an Excel spreadsheet. This tool is invaluable for forensic investigations, as SRUM maintains records of applications that have run on a system within the last 30 days.

    عرض على GitHub↗0
  • markbaggett/werejugoM

    MarkBaggett/werejugo

    0عرض على GitHub↗

    Version 0.9 - beta

    عرض على GitHub↗0
  • ahmedkhlief/apt-hunterالصورة الرمزية لـ ahmedkhlief

    ahmedkhlief/APT-Hunter

    1,408عرض على GitHub↗

    APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the sea of windows event logs to decrease the time to uncover suspicious activity

    Python
    عرض على GitHub↗1,408
  • nvisosecurity/evtx-hunterالصورة الرمزية لـ NVISOsecurity

    NVISOsecurity/evtx-hunter

    158عرض على GitHub↗

    evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.

    Python
    عرض على GitHub↗158
  • log2timeline/plasoالصورة الرمزية لـ log2timeline

    log2timeline/plaso

    2,095عرض على GitHub↗

    Super timeline all the things

    Python
    عرض على GitHub↗2,095
  • bsi-bund/rdpcachestitcherالصورة الرمزية لـ BSI-Bund

    BSI-Bund/RdpCacheStitcher

    329عرض على GitHub↗

    RdpCacheStitcher is a tool that supports forensic analysts in reconstructing useful images out of RDP cache bitmaps. Using raw RDP cache tile bitmaps extracted by tools like e.g. ANSSI's BMC-Tools (https://github.com/ANSSI-FR/bmc-tools) as input, it provides a graphical user interface and…

    C++
    عرض على GitHub↗329
  • withsecurelabs/chainsawالصورة الرمزية لـ WithSecureLabs

    WithSecureLabs/chainsaw

    3,446عرض على GitHub↗

    Chainsaw is a Windows forensic analysis tool used for parsing system databases and extracting security artefacts. It functions as a forensic artefact extractor and a scanner for identifying security threats and log tampering within Windows event logs. The project distinguishes itself by implementing a Sigma rule forensic scanner that applies standardized detection logic and custom rule sets to event logs and forensic artefacts. It enables threat hunting workflows by matching event data against patterns to identify malicious activity, lateral movement, and brute force attacks. The tool's capa

    Rustattackblueteamchainsaw
    عرض على GitHub↗3,446
  • yamato-security/hayabusaالصورة الرمزية لـ Yamato-Security

    Yamato-Security/hayabusa

    3,027عرض على GitHub↗

    Hayabusa is a Windows event log analyzer, threat hunting tool, and forensic timeline generator. It functions as a detection engine that applies threat patterns to logs to identify suspicious behavior and security threats. The project distinguishes itself through the ability to synchronize detection rules from remote repositories and tune risk levels to prioritize critical alerts. It also provides specialized forensic capabilities, such as extracting event log data into chronological records for incident response investigations. The tool's broader capabilities include security log enrichment

    Rustattackcybersecuritydetection
    عرض على GitHub↗3,027