Skip to content
#

kape

Here are 29 public repositories matching this topic...

A collection of powershell scripts that are designed to be ran from a Microsoft Defender for Endpoint Live Response terminal, utilizing open-source tools, such as Kape (Kroll Artifact Parser and Extractor), to forensically acquire and process necessary artifact used in compromise assessments. Additional scripts provide pre-processing automation …

  • Updated Apr 26, 2023
  • PowerShell

DFIR artifact catalog (6,554 artifacts, LOL/LOFL binaries, abusable sites) plus the normalized report vocabulary the SecurityRonin analyzer fleet shares — offline Rust library + 4n6query CLI

  • Updated Jun 29, 2026
  • Rust

Improve this page

Add a description, image, and links to the kape topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the kape topic, visit your repo's landing page and select "manage topics."

Learn more