Skip to content

Commit 5669866

Browse files
authored
Create tooling-guide.md
1 parent a969284 commit 5669866

File tree

1 file changed

+26
-0
lines changed

1 file changed

+26
-0
lines changed

extras/tooling-guide.md

Lines changed: 26 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,26 @@
1+
# DFIR Tooling Guide
2+
3+
A practical guide to tools commonly used in DFIR investigations.
4+
5+
## Categories
6+
7+
### 🖥️ Endpoint Tools
8+
- Autopsy/The Sleuth Kit
9+
- Velociraptor
10+
- KAPE
11+
- FTK Imager
12+
13+
### 🌐 Network Tools
14+
- Wireshark
15+
- Zeek
16+
- Suricata
17+
18+
### 🔍 Malware Tools
19+
- Ghidra
20+
- CyberChef
21+
- Cuckoo Sandbox
22+
23+
## Best Practices
24+
- Validate tools before use
25+
- Maintain hash integrity
26+
- Document every action

0 commit comments

Comments
 (0)