IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.
Las características principales de certtools/intelmq son: Threat Intelligence, Forensic Frameworks.
Las alternativas de código abierto para certtools/intelmq incluyen: google/turbinia. invoke-ir/powerforensics — PowerForensics provides an all in one platform for live disk forensic analysis. arxsys/dff — DFF (Digital Forensics Framework) is a Forensics Framework coming with command line and graphical interfaces. DFF can… dfirkuiper/kuiper — Digital Forensics Investigation Platform. coinbase/dexter — Forensics acquisition framework designed to be extensible and secure. lmco/laikaboss — Laika BOSS: Object Scanning System.
Forensics acquisition framework designed to be extensible and secure
DFF (Digital Forensics Framework) is a Forensics Framework coming with command line and graphical interfaces. DFF can be used to investigate hard drives and volatile memory and create reports about user and system activities.