BigHugger
sk Skill · meltedinhex

collecting-volatile-evidence-from-a-suspect-host

Collects volatile evidence from a potentially compromised host in correct order of volatility: memory, network state, running processes, logged-on users, and open handles, while preserving integrity and minimizing footprint. Activates for requests to collect volatile evidence, perform live response, or capture host state before shutdown.

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
bashincident-responsePythonforensicsvolatile-evidencelive-responselab-foundations
Host repository
meltedinhex/analyst-ai-pack
Version
1.0.0
Licence
Apache-2.0
Host stars
22
Host language
Python