Tools for AWS
A few tools usesd for AWS
URL
Content
https://github.com/ThreatResponse/aws_ir
AWS_IR: is a Python CLI tool used toautomate initial response actions
https://github.com/ThreatResponse/margaritashotgun
Margarita Shotgun is used to dump memory from systems
https://www.sans.org/tools/sift-workstation/
SANS Investigative Forensic Toolkit is an all-in-one forensic toolkit
https://github.com/Netflix-Skunkworks/diffy
Diffy is a tool for identifying changes or differences in systems
https://github.com/aws-solutions/automated-forensic-orchestrator-for-amazon-ec2
Automatic Forensics Orchestrator collects full snapshots of EC2 systems
https://github.com/osquery/osquery
OSQuery is an endpoint detection and response tool
https://www.sans.org/tools/sof-elk/
SOF-ELK is an analytics platform focused on the needs of computer forensics and investigation teams
https://github.com/prowler-cloud/prowler
Prowler is a multi-purpose toolkit
https://github.com/keikoproj/kube-forensics
kube-forensics is used to dump the running pod and all its containers
https://github.com/invictus-ir/Invictus-AWS
Invictus-AWS automatically enumerates and acquires relevant data
Last updated
Was this helpful?