Docker
Automating DFIR pipelines …
Automating DFIR pipelines with OpenRelik
Rationale
In a previous blog post, I explored the potential of Velociraptor
as a tool for acquiring artefacts, performing triage tasks from clients through the KAPE.Files
artefact, and then processing them with Hayabusa
and Plaso
to generate Timelines and …