awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
gfoss avatar

gfoss/PSRecon

0
View on GitHub↗
494 stars·105 forks·PowerShell·Apache-2.0·7 views

PSRecon

:rocket: PSRecon gathers data from a remote Windows host using PowerShell (v2 or later), organizes the data into folders, hashes all extracted data, hashes PowerShell and various system properties, and sends the data off to the security team. The data can be pushed to a share, sent over email, or retained locally.

Features

  • Forensics - Collects forensic data from Windows systems.
  • Threat Hunting Operations - Analyzes remote Windows systems and generates forensic reports.
  • Windows Evidence Collection - Remote data gathering tool for Windows hosts.

Star history

Star history chart for gfoss/psreconStar history chart for gfoss/psrecon

How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Frequently asked questions

What does gfoss/psrecon do?

:rocket: PSRecon gathers data from a remote Windows host using PowerShell (v2 or later), organizes the data into folders, hashes all extracted data, hashes PowerShell and various system properties, and sends the data off to the security team. The data can be pushed to a share, sent over email, or retained locally.

What are the main features of gfoss/psrecon?

The main features of gfoss/psrecon are: Forensics, Threat Hunting Operations, Windows Evidence Collection.

What are some open-source alternatives to gfoss/psrecon?

Open-source alternatives to gfoss/psrecon include: invoke-ir/powerforensics — PowerForensics provides an all in one platform for live disk forensic analysis. ghostpack/seatbelt — Seatbelt is a C# offensive security framework and host security auditor designed to perform endpoint surveys on… velocidex/velociraptor — Velociraptor is a digital forensics and incident response platform, endpoint detection and response system, and… cugu/awesome-forensics. google/grr — GRR is a distributed incident response platform and asynchronous forensic task orchestrator. It functions as a remote… cyb3rward0g/helk — HELK is a containerized security information and event management environment and threat hunting platform. It provides…

Open-source alternatives to PSRecon

Similar open-source projects, ranked by how many features they share with PSRecon.
  • invoke-ir/powerforensicsInvoke-IR avatar

    Invoke-IR/PowerForensics

    1,435View on GitHub↗

    PowerForensics provides an all in one platform for live disk forensic analysis

    C#
    View on GitHub↗1,435
  • velocidex/velociraptorVelocidex avatar

    Velocidex/velociraptor

    3,769View on GitHub↗

    Velociraptor is a digital forensics and incident response platform, endpoint detection and response system, and visibility tool. It provides a query engine and remote forensic collector used to hunt for indicators of compromise and perform triage across a fleet of hosts. The system is distinguished by its specialized query language for interrogating host state and parsing binary files. It features a notebook environment that combines markdown documentation with executable query cells to standardize investigative workflows and enable collaborative reporting. The platform covers a wide range o

    Godigital-forensicsendpoint-discoveryendpoint-protection
    View on GitHub↗3,769
  • ghostpack/seatbeltGhostPack avatar

    GhostPack/Seatbelt

    4,619View on GitHub↗

    Seatbelt is a C# offensive security framework and host security auditor designed to perform endpoint surveys on Windows systems. It functions as a modular tool for identifying vulnerabilities, misconfigurations, and security-relevant artifacts on both local and remote hosts. The project distinguishes itself through a module-based check system that allows for the integration of custom security command units. It features a security event log parser to track logon and process activity, alongside a credential extraction utility for gathering browser history, saved passwords, and cloud credentials

    C#
    View on GitHub↗4,619
  • cugu/awesome-forensicscugu avatar

    cugu/awesome-forensics

    4,911View on GitHub↗
    computer-forensicsdfirdigital-forensics
    View on GitHub↗4,911
  • See all 19 alternatives to PSRecon→