Tools for AWS

A few tools usesd for AWS

URL

Content

https://github.com/ThreatResponse/aws_ir

AWS_IR: is a Python CLI tool used toautomate initial response actions

https://github.com/ThreatResponse/margaritashotgun

Margarita Shotgun is used to dump memory from systems

https://www.sans.org/tools/sift-workstation/

SANS Investigative Forensic Toolkit is an all-in-one forensic toolkit

https://github.com/Netflix-Skunkworks/diffy

Diffy is a tool for identifying changes or differences in systems

https://github.com/aws-solutions/automated-forensic-orchestrator-for-amazon-ec2

Automatic Forensics Orchestrator collects full snapshots of EC2 systems

https://github.com/osquery/osquery

OSQuery is an endpoint detection and response tool

https://www.sans.org/tools/sof-elk/

SOF-ELK is an analytics platform focused on the needs of computer forensics and investigation teams

https://github.com/prowler-cloud/prowler

Prowler is a multi-purpose toolkit

https://github.com/keikoproj/kube-forensics

kube-forensics is used to dump the running pod and all its containers

https://github.com/invictus-ir/Invictus-AWS

Invictus-AWS automatically enumerates and acquires relevant data

Last updated

Was this helpful?