Matthew Green avatar

Matthew Green

Community

@mgreen27 · Sydney

213Followers
|
36Public Repos
|
12Published Skills

DFIR / Detection guy

Agent Skills by Matthew Green

Showing 12 vetted skills indexed across 1 GitHub repositories.

mgreen27mgreen27

ioc-tracker

Correlate indicators of compromise across multiple hosts from CSV data.

Community
Intermediate
mgreen27mgreen27

windows-registry-analysis

Retrieve Windows registry information from disk images via Velociraptor.

Community
Intermediate
mgreen27mgreen27

investigation-query

Query investigation wiki pages and spreadsheets for case status and findings.

Community
Intermediate
mgreen27mgreen27

investigation

Create structured investigation case folders with documentation and CSV templates.

Community
Basic
mgreen27mgreen27

windows-analysis

Collect and analyze Windows artifacts using Velociraptor for incident response.

Community
Intermediate
mgreen27mgreen27

investigation-ingest

Integrate raw forensic outputs into investigation documentation and update reports and spreadsheet links.

Community
Intermediate
mgreen27mgreen27

windows-execution-analysis

Collect and analyze Windows process execution artifacts with Velociraptor.

Community
Intermediate
mgreen27mgreen27

memory-analysis

Execute Volatility 3 plugins to analyze Windows memory images for malicious processes.

Community
Intermediate
mgreen27mgreen27

virustotal

Retrieve VirusTotal reports and relationships for hashes, URLs, IPs, and domains.

Community
Basic
mgreen27mgreen27

detect-dfir-collection-type

Classify forensic evidence files by file signatures and directory keywords.

Community
Intermediate
mgreen27mgreen27

add-velociraptor-mapped-client

Attach offline evidence disks or directories to Velociraptor GUI environments.

Community
Intermediate
mgreen27mgreen27

prep-dfir-tools

Deploy and configure Velociraptor, Volatility 3, and Sleuth Kit on macOS or Linux.

Community
Intermediate