Skip to content
#

kape

Here are 30 public repositories matching this topic...

A collection of powershell scripts that are designed to be ran from a Microsoft Defender for Endpoint Live Response terminal, utilizing open-source tools, such as Kape (Kroll Artifact Parser and Extractor), to forensically acquire and process necessary artifact used in compromise assessments. Additional scripts provide pre-processing automation …

  • Updated Apr 26, 2023
  • PowerShell

DFIR artifact catalog (6,554 artifacts, LOL/LOFL binaries, abusable sites) plus the normalized report vocabulary the SecurityRonin analyzer fleet shares — offline Rust library + 4n6query CLI

  • Updated Sep 6, 2026
  • Rust

Add this topic to your repo

To associate your repository with the kape topic, visit your repo's landing page and select "manage topics."

Learn more