Velociraptor DFIR

Velociraptor DFIR

计算机和网络安全

An advanced digital forensic and incident response tool for your organization's endpoints, powered by Rapid7

关于我们

Velociraptor is a unique, advanced open-source endpoint monitoring, digital forensic and cyber response platform. It was developed by Digital Forensic and Incident Response (DFIR) professionals who needed a powerful and efficient way to hunt for specific artifacts and monitor activities across fleets of endpoints. Velociraptor provides you with the ability to more effectively respond to a wide range of digital forensic and cyber incident response investigations and data breaches such as: ? Reconstructing attacker activities through digital forensic analysis ? Hunting for evidence of sophisticated adversaries ? Investigating malware outbreaks and other suspicious network activities ? Monitoring continuously for suspicious user activities, such as files copied to USB devices ? Discovering whether disclosure of confidential information occurred outside the network ? Gathering endpoint data over time for use in threat hunting and future investigations Velociraptor’s power and flexibility comes from the Velociraptor Query Language (VQL). VQL is a framework for creating highly customized artifacts, which allow you to collect, query, and monitor almost any aspect of an endpoint, groups of endpoints, or an entire network. It can also be used to create continuous monitoring rules on the endpoint, as well as automate tasks on the server. Follow us on social media: ? Twitter: @velocidex ? LinkedIn: www.dhirubhai.net/company/velociraptor-dfir ? Discord: docs.velociraptor.app/discord/ ? Github: github.com/Velocidex/velociraptor

网站
https://docs.velociraptor.app/
所属行业
计算机和网络安全
规模
2-10 人
总部
?
类型
上市公司
领域
DFIR、Cybersecurity、Detection & Response和Endpoint Management

动态

关联主页

相似主页