[redteam.to]
Tools Submit
← All tools

MDE-DFIR-Resources

https://github.com/cyb3rmik3/MDE-DFIR-Resources
Open Source
Categories
Forensics
Description

A curated list of resources for DFIR through Microsoft Defender for Endpoint leveraging kusto queries, powershell scripts, tools such as KAPE and THOR Cloud and more.

Keywords
curated-collections curated-list dfir digital-forensics digital-forensics-incident-response incident-response kql kusto kusto-query kusto-query-language live-response mde microsoft microsoft-defender-for-endpoint resources
See also
horus
Open Source

An OSINT / digital forensics tool built in Python…

byvalver
Free

takes shellcode bad-bytes and banishes them, returning cleaned shellcode with preserved functionalit…

spyder-osint
Open Source

Spyder OSINT GUI — Graphical open-source intelligence research tool for phone number lookup, IP geol…

volatility3
Free

Volatility is the world's most widely used framework for extracting digital artifacts from volatile …

jupyter-collection
Open Source

Collection of Jupyter Notebooks by @fr0gger_…

Autopsy
Open Source

Digital forensics platform and graphical interface to The Sleuth Kit. Features timeline analysis, ke…

© 2026 redteam.to — The Pentest Tool Directory

For authorized security testing and educational use only.