awesome-repositories.com
Blog
MCP
awesome-repositories.com

Découvrez les meilleurs dépôts open-source grâce à notre recherche par IA.

ExplorerRecherches sélectionnéesAlternatives open sourceLogiciels auto-hébergésBlogPlan du site
ProjetServeur MCPÀ proposNotre méthodologiePresse
Mentions légalesConfidentialitéConditions d'utilisation
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to tclahr/uac

Open-source alternatives to Tclahr Uac

30 open-source projects similar to tclahr/uac, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Tclahr Uac alternative.

  • orlikoski/cylrAvatar de orlikoski

    orlikoski/CyLR

    727Voir sur GitHub↗

    CyLR - Live Response Collection Tool

    C#
    Voir sur GitHub↗727
  • velocidex/velociraptorAvatar de Velocidex

    Velocidex/velociraptor

    3,769Voir sur GitHub↗

    Velociraptor is a digital forensics and incident response platform, endpoint detection and response system, and visibility tool. It provides a query engine and remote forensic collector used to hunt for indicators of compromise and perform triage across a fleet of hosts. The system is distinguished by its specialized query language for interrogating host state and parsing binary files. It features a notebook environment that combines markdown documentation with executable query cells to standardize investigative workflows and enable collaborative reporting. The platform covers a wide range o

    Godigital-forensicsendpoint-discoveryendpoint-protection
    Voir sur GitHub↗3,769
  • google/grrAvatar de google

    google/grr

    5,074Voir sur GitHub↗

    GRR is a distributed incident response platform and asynchronous forensic task orchestrator. It functions as a remote forensics framework designed to collect and analyze volatile data, system memory, and digital artifacts from remote hosts during security incident response. The system operates as a remote endpoint triage system, utilizing a coordinated architecture to manage a fleet of agents. It enables the execution of investigative tasks across multiple systems, allowing for the search of files and registries across a large fleet of machines to identify compromised hosts. The platform pro

    Python
    Voir sur GitHub↗5,074
  • forensicartifacts/artifactsAvatar de ForensicArtifacts

    ForensicArtifacts/artifacts

    1,240Voir sur GitHub↗

    Digital Forensics artifact repository

    Python
    Voir sur GitHub↗1,240

Recherche par IA

Explorez plus de dépôts awesome

Décrivez vos besoins en langage naturel — l'IA classe des milliers de projets open source sélectionnés par pertinence.

Find more with AI search
  • diogo-fernan/ir-rescueAvatar de diogo-fernan

    diogo-fernan/ir-rescue

    489Voir sur GitHub↗

    A Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.

    Batchfile
    Voir sur GitHub↗489
  • volatilityfoundation/volatilityAvatar de volatilityfoundation

    volatilityfoundation/volatility

    7,971Voir sur GitHub↗

    Volatility is a memory forensics framework and digital forensics tool designed to extract and analyze evidence from volatile computer memory dumps. It functions as a memory dump parser and analysis platform used to identify running processes, network connections, and loaded modules from a system RAM capture. The framework enables the reconstruction of system state to uncover malicious activity, such as rootkits and injected code, during malware incident response and threat hunting. It provides capabilities for digital forensic investigations to detect unauthorized access and indicators of com

    Pythonmalwarememorypython
    Voir sur GitHub↗7,971
  • rough007/cdqrAvatar de rough007

    rough007/CDQR

    345Voir sur GitHub↗

    The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted drives and extracted artifacts from Windows, Linux, MacOS, and Android devices

    Python
    Voir sur GitHub↗345
  • osquery/osqueryAvatar de osquery

    osquery/osquery

    23,113Voir sur GitHub↗

    Osquery is a unified endpoint monitoring framework that exposes operating system internals as relational tables. By representing hardware, network, and process activity as structured data, it allows users to retrieve system state and configuration information using standard SQL syntax. The system distinguishes itself through a cross-platform abstraction layer that normalizes disparate operating system interfaces into a consistent schema across Windows, macOS, and Linux. It supports both interactive local analysis via a command-line shell and distributed fleet orchestration, where recurring qu

    C++hacktoberfestintrusion-detectionmonitoring
    Voir sur GitHub↗23,113
  • wagga40/zircoliteAvatar de wagga40

    wagga40/Zircolite

    782Voir sur GitHub↗
    Pythonauditddetectionevtx
    Voir sur GitHub↗782
  • invoke-ir/powerforensicsAvatar de Invoke-IR

    Invoke-IR/PowerForensics

    1,435Voir sur GitHub↗

    PowerForensics provides an all in one platform for live disk forensic analysis

    C#
    Voir sur GitHub↗1,435
  • microsoft/avmlAvatar de microsoft

    microsoft/avml

    1,098Voir sur GitHub↗

    AVML - Acquire Volatile Memory for Linux

    Rust
    Voir sur GitHub↗1,098
  • mozilla/migAvatar de mozilla

    mozilla/mig

    1,202Voir sur GitHub↗

    Distributed & real time digital forensics at the speed of the cloud

    Go
    Voir sur GitHub↗1,202
  • philhagen/sof-elkAvatar de philhagen

    philhagen/sof-elk

    1,740Voir sur GitHub↗

    This repository contains the configuration and support files for the SOF-ELK® VM Appliance.

    Ruby
    Voir sur GitHub↗1,740
  • threatresponse/margaritashotgunAvatar de ThreatResponse

    ThreatResponse/margaritashotgun

    253Voir sur GitHub↗

    Remote Memory Acquisition Tool

    Python
    Voir sur GitHub↗253
  • google/timesketchAvatar de google

    google/timesketch

    3,355Voir sur GitHub↗

    Collaborative forensic timeline analysis

    Python
    Voir sur GitHub↗3,355
  • jpcertcc/logontracerAvatar de JPCERTCC

    JPCERTCC/LogonTracer

    3,136Voir sur GitHub↗

    LogonTracer is a security auditing tool designed for logon analysis and forensic log auditing. It functions as a dockerized security auditor that utilizes a security event graph database to map account names and network addresses, allowing for the visualization of complex system compromise patterns and authentication paths. The system features a Sigma detection engine that scans imported event logs against standardized rule sets to identify known malicious activity. It also includes an anomalous behavior detector that applies statistical analysis, graph algorithms, and hidden Markov models to

    Pythonactive-directoryblueteamdfir
    Voir sur GitHub↗3,136
  • forensicanalysis/artifactcollectorAvatar de forensicanalysis

    forensicanalysis/artifactcollector

    308Voir sur GitHub↗

    🧭 The artifactcollector is a customizable agent to collect forensic artifacts on any Windows, macOS or Linux system

    Go
    Voir sur GitHub↗308
  • fox-it/acquireAvatar de fox-it

    fox-it/acquire

    121Voir sur GitHub↗

    acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.

    Python
    Voir sur GitHub↗121
  • dfirkuiper/kuiperAvatar de DFIRKuiper

    DFIRKuiper/Kuiper

    893Voir sur GitHub↗

    Digital Forensics Investigation Platform

    JavaScript
    Voir sur GitHub↗893
  • google/rekallAvatar de google

    google/rekall

    1,998Voir sur GitHub↗

    Rekall Memory Forensic Framework

    Python
    Voir sur GitHub↗1,998
  • google/turbiniaAvatar de google

    google/turbinia

    783Voir sur GitHub↗
    Pythonclouddfirforensics
    Voir sur GitHub↗783
  • intezer/linux-explorerAvatar de intezer

    intezer/linux-explorer

    406Voir sur GitHub↗

    Easy-to-use live forensics toolbox for Linux endpoints

    HTML
    Voir sur GitHub↗406
  • markbaggett/srum-dumpM

    MarkBaggett/srum-dump

    0Voir sur GitHub↗

    SRUM-DUMP extracts data from the System Resource Utilization Management (SRUM) database and generates an Excel spreadsheet. This tool is invaluable for forensic investigations, as SRUM maintains records of applications that have run on a system within the last 30 days.

    Voir sur GitHub↗0
  • markbaggett/werejugoM

    MarkBaggett/werejugo

    0Voir sur GitHub↗

    Version 0.9 - beta

    Voir sur GitHub↗0
  • ahmedkhlief/apt-hunterAvatar de ahmedkhlief

    ahmedkhlief/APT-Hunter

    1,408Voir sur GitHub↗

    APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the sea of windows event logs to decrease the time to uncover suspicious activity

    Python
    Voir sur GitHub↗1,408
  • nvisosecurity/evtx-hunterAvatar de NVISOsecurity

    NVISOsecurity/evtx-hunter

    158Voir sur GitHub↗

    evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.

    Python
    Voir sur GitHub↗158
  • log2timeline/plasoAvatar de log2timeline

    log2timeline/plaso

    2,095Voir sur GitHub↗

    Super timeline all the things

    Python
    Voir sur GitHub↗2,095
  • bsi-bund/rdpcachestitcherAvatar de BSI-Bund

    BSI-Bund/RdpCacheStitcher

    329Voir sur GitHub↗

    RdpCacheStitcher is a tool that supports forensic analysts in reconstructing useful images out of RDP cache bitmaps. Using raw RDP cache tile bitmaps extracted by tools like e.g. ANSSI's BMC-Tools (https://github.com/ANSSI-FR/bmc-tools) as input, it provides a graphical user interface and…

    C++
    Voir sur GitHub↗329
  • withsecurelabs/chainsawAvatar de WithSecureLabs

    WithSecureLabs/chainsaw

    3,446Voir sur GitHub↗

    Chainsaw is a Windows forensic analysis tool used for parsing system databases and extracting security artefacts. It functions as a forensic artefact extractor and a scanner for identifying security threats and log tampering within Windows event logs. The project distinguishes itself by implementing a Sigma rule forensic scanner that applies standardized detection logic and custom rule sets to event logs and forensic artefacts. It enables threat hunting workflows by matching event data against patterns to identify malicious activity, lateral movement, and brute force attacks. The tool's capa

    Rustattackblueteamchainsaw
    Voir sur GitHub↗3,446
  • yamato-security/hayabusaAvatar de Yamato-Security

    Yamato-Security/hayabusa

    3,027Voir sur GitHub↗

    Hayabusa is a Windows event log analyzer, threat hunting tool, and forensic timeline generator. It functions as a detection engine that applies threat patterns to logs to identify suspicious behavior and security threats. The project distinguishes itself through the ability to synchronize detection rules from remote repositories and tune risk levels to prioritize critical alerts. It also provides specialized forensic capabilities, such as extracting event log data into chronological records for incident response investigations. The tool's broader capabilities include security log enrichment

    Rustattackcybersecuritydetection
    Voir sur GitHub↗3,027