DFIR links

Mixed

https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-61r2.pdf

https://github.com/Neo23x0

https://www.iocbucket.com/openioceditor

https://github.com/google/grr

https://winpmem.velocidex.com/docs/

http://edmands.net/Edmands.net/JumpBag.html

https://www.malware-traffic-analysis.net/2020/07/13/index2.html

https://www.netresec.com/?page=PcapFiles

https://github.com/meirwah/awesome-incident-response#memory-imaging-tools

https://github.com/orlikoski/CDQR

http://detect-respond.blogspot.com/2013/03/the-pyramid-of-pain.html

https://github.com/gchq/CyberChef

Memory forensics

https://github.com/volatilityfoundation/volatility/wiki/Memory-Samples

https://volatility-labs.blogspot.com/2019/10/volatility-malware-and-memory-forensics-training.html

https://www.andreafortuna.org/2017/08/07/volatility-my-own-cheatsheet-part-7-analyze-and-convert-crash-dumps-and-hibernation-files/

https://www.forwarddefense.com/pdfs/Memory-Analysis-with-Volatility.pdf

https://digital-forensics.sans.org/media/volatility-memory-forensics-cheat-sheet.pdf

https://packetlife.net/media/library/13/Wireshark_Display_Filters.pdf

Lenny Zeltzer og Didier Stevens

https://zeltser.com/

https://zeltser.com/automated-malware-analysis/

https://zeltser.com/malware-sample-sources/

https://blog.didierstevens.com/programs/virustotal-tools/

Data collection

https://github.com/orlikoski/CyLR/releases

Virtual appliances.

https://securityonionsolutions.com/

https://cybersecurity.att.com/products/ossim

https://cybersecurity.att.com/products/ossim/download

https://wazuh.com/

Malware analyse

https://github.com/rshipp/awesome-malware-analysis

https://github.com/Yara-Rules/rules

https://github.com/JusticeRage/Manalyze

https://remnux.org/

https://www.circl.lu/misp-images/latest/

https://www.youtube.com/watch?v=QlQS4gk_lFU (Sandbox setup)

https://www.malwarearchaeology.com/cheat-sheets

https://thedfirreport.com/2020/10/18/ryuk-in-5-hours/

https://evasions.checkpoint.com/ (Evasion teknikker)

https://www.mcafee.com/blogs/other-blogs/mcafee-labs/evolution-of-malware-sandbox-evasion-tactics-a-retrospective-study/

Online Malware analysis sandbox

https://urlscan.io/

Network analysis

https://hackertarget.com/tshark-tutorial-and-filter-examples/

https://danielmiessler.com/study/tcpdump/

https://www.wireshark.org/docs/man-pages/tshark.html

Convert

https://gchq.github.io/CyberChef/

https://stegtool.net/