IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.
Forensics acquisition framework designed to be extensible and secure
DFF (Digital Forensics Framework) is a Forensics Framework coming with command line and graphical interfaces. DFF can be used to investigate hard drives and volatile memory and create reports about user and system activities.
AIFT is a GUI, CLI, REST API, and MCP tool that helps DFIR analysts get oriented quickly. Point it at disk images, VM images, forensic archives, or triage packages; AIFT discovers what can be opened, parses artifacts with Dissect, and uses AI to turn parsed data into concrete leads and gaps for the investigator to verify.
Las características principales de flipforensics/aift son: Forensic Frameworks.
Las alternativas de código abierto para flipforensics/aift incluyen: arxsys/dff — DFF (Digital Forensics Framework) is a Forensics Framework coming with command line and graphical interfaces. DFF can… certtools/intelmq — IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing… coinbase/dexter — Forensics acquisition framework designed to be extensible and secure. dfirkuiper/kuiper — Digital Forensics Investigation Platform. fox-it/dissect — Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse… google/turbinia.