⚡️ Catalyst is a self-hosted, open source incident response platform and ticket system that helps to automate alert handling and incident response processes
Shuffle: A general purpose security automation platform. Our focus is on collaboration and resource sharing.
A framework for orchestrating forensic collection, processing and data export
TheHive is a security incident response platform and multi-tenant case management system. It functions as a Security Orchestration, Automation, and Response (SOAR) tool and a threat intelligence platform designed to coordinate security investigations by managing alerts, cases, and observables. The platform is distinguished by its multi-tenant architecture, which isolates data across different organizations while supporting selective cross-tenant sharing. It features a SOAR automation engine capable of executing sandboxed JavaScript logic to automate workflows and trigger response actions thro
DFIRTrack - The Incident Response Tracking Application
The main features of dfirtrack/dfirtrack are: Incident Response Management, Forensics and Incident Response, Incident Management, Incident Management and Automation.
Open-source alternatives to dfirtrack/dfirtrack include: securitybrewery/catalyst — ⚡️ Catalyst is a self-hosted, open source incident response platform and ticket system that helps to automate alert… log2timeline/dftimewolf — A framework for orchestrating forensic collection, processing and data export. frikky/shuffle — Shuffle: A general purpose security automation platform. Our focus is on collaboration and resource sharing. thehive-project/thehive — TheHive is a security incident response platform and multi-tenant case management system. It functions as a Security… sandialabs/scot — Sandia Cyber Omni Tracker (SCOT). dfir-iris/iris-web.