Matthew Green
Community@mgreen27 · Sydney
DFIR / Detection guy
Agent Skills by Matthew Green
Showing 12 vetted skills indexed across 1 GitHub repositories.
ioc-tracker
Correlate indicators of compromise across multiple hosts from CSV data.
windows-registry-analysis
Retrieve Windows registry information from disk images via Velociraptor.
investigation-query
Query investigation wiki pages and spreadsheets for case status and findings.
investigation
Create structured investigation case folders with documentation and CSV templates.
windows-analysis
Collect and analyze Windows artifacts using Velociraptor for incident response.
investigation-ingest
Integrate raw forensic outputs into investigation documentation and update reports and spreadsheet links.
windows-execution-analysis
Collect and analyze Windows process execution artifacts with Velociraptor.
memory-analysis
Execute Volatility 3 plugins to analyze Windows memory images for malicious processes.
virustotal
Retrieve VirusTotal reports and relationships for hashes, URLs, IPs, and domains.
detect-dfir-collection-type
Classify forensic evidence files by file signatures and directory keywords.
add-velociraptor-mapped-client
Attach offline evidence disks or directories to Velociraptor GUI environments.
prep-dfir-tools
Deploy and configure Velociraptor, Volatility 3, and Sleuth Kit on macOS or Linux.