Posts

Showing posts with the label Virtual Machine

Malboxes - Builds Malware Analysis Windows Vms Together With Therefore That Y'all Don't Bring To

Image
Builds malware analysis Windows virtual machines therefore that y'all don’t convey to. Requirements Python 3.3+ packer: https://www.packer.io/docs/install/index.html vagrant: https://www.vagrantup.com/downloads.html VirtualBox or an vSphere / ESXi server Minimum specs for the construct machine At to the lowest degree five GB of RAM VT-X extensions strongly recommended Fedora dnf install ruby-devel gcc-c++ zlib-devel vagrant plugin install winrm winrm-fs Debian apt install vagrant git python3-pip Installation Linux/Unix Install git, vagrant as well as packer using your distribution’s packaging tool (packer is sometimes called packer-io) pip install malboxes: sudo pip3 install git+https://github.com/GoSecure/malboxes.git#egg=malboxes Windows Note Starting amongst Windows 10 Hyper-V is e'er running below the operating system. Since VT-X needs to hold out operated solely ye...

Dfirtrack - The Incident Answer Tracking Application

Image
DFIRTrack (Digital Forensics as well as Incident Response Tracking application) is an opened upwards source spider web application mainly based on Django using a PostgreSQL database backend. In contrast to other slap-up incident reply tools, which are mainly case-based as well as back upwards the piece of occupation of CERTs, SOCs etc. inwards their daily business, DFIRTrack is focused on treatment 1 major incident alongside a lot of affected systems every bit it is oftentimes observed inwards APT cases. It is meant to endure used every bit a tool for dedicated incident reply teams inwards large cases. So, of course, CERTs as well as SOCs may utilisation DFIRTrack every bit well, but they may experience it volition endure to a greater extent than appropriate inwards special cases instead of every twenty-four hr menstruum work. In contrast to case-based applications, DFIRTrack industrial plant inwards a system-based fashion. It keeps rail of the condition of diverse systems...

Fir - Fast Incident Response

Image
FIR (Fast Incident Response) is an cybersecurity incident management platform designed alongside agility together with speed inwards mind. It allows for slowly creation, tracking, together with reporting of cybersecurity incidents. FIR is for anyone needing to runway cybersecurity incidents (CSIRTs, CERTs, SOCs, etc.). It was tailored to suit our needs together with our team's habits, but nosotros lay a corking bargain of endeavor into making it every bit generic every bit possible earlier releasing it together with then that other teams around the Blue Planet may every bit good purpose it together with customize it every bit they catch fit. See the wiki for the user manual together with to a greater extent than screenshots ! Installation There are 2 ways to install FIR. If yous desire to accept it for a test-drive, simply follow the instructions for setting upwards a evolution environment inwards the Wiki. If yous similar it together with desire to laid it upwa...