PowerShell Forensics

Open-source PowerShell projects categorized as Forensics

Top 5 PowerShell Forensic Projects

  • sysmon-config

    Advanced Sysmon ATT&CK configuration focusing on Detecting the Most Techniques per Data source in MITRE ATT&CK, Provide Visibility into Forensic Artifact Events for UEBA, Detect Exploitation events with wide CVE Coverage, and Risk Scoring of CVE, UEBA, Forensic, and MITRE ATT&CK Events. (by ion-storm)

  • WELA

    WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
  • PWF

    Practical Windows Forensics Training

  • Invoke-Forensics

    Invoke-Forensics provides PowerShell commands to simplify working with the forensic tools KAPE and RegRipper.

  • PowerShell-Administration-Tools

    Powershell scripts for automating common system administration, blue team, and digital forensics tasks

  • SaaSHub

    SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives

    SaaSHub logo
NOTE: The open source projects on this list are ordered by number of github stars. The number of mentions indicates repo mentiontions in the last 12 Months or since we started tracking (Dec 2020).

PowerShell Forensics related posts

  • Yamato-Security/WELA: WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)

    1 project | /r/cyber_deception | 26 Dec 2021
  • WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs

    1 project | /r/purpleteamsec | 25 Dec 2021
  • GitHub - swisscom/Invoke-Forensics: Invoke-Forensics provides PowerShell commands to simplify working with the forensic tools KAPE and RegRipper.

    1 project | /r/bag_o_news | 6 Aug 2021
  • Forensic helper scripts for KAPE and RegRipper | Invoke-Forensics could help you by providing PowerShell commands to simplify working with these tools.

    1 project | /r/blueteamsec | 19 May 2021

Index

What are some of the best open-source Forensic projects in PowerShell? This list will help you:

Project Stars
1 sysmon-config 752
2 WELA 678
3 PWF 546
4 Invoke-Forensics 104
5 PowerShell-Administration-Tools 49

Sponsored
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com