Johan Berggren (@jberggren) 's Twitter Profile
Johan Berggren

@jberggren

DFIR @Google :: I write open source tools :: Creator of OpenRelik and Timesketch :: Tweets are my own

@[email protected] on Mastodon

ID: 179966882

linkhttps://openrelik.org calendar_today18-08-2010 14:35:09

884 Tweet

2,2K Followers

588 Following

Johan Berggren (@jberggren) 's Twitter Profile Photo

I just published the #OpenRelik design document. It's a high level but pretty detailed description of the system. RFC: Comments, suggestions (and rants) are much appreciated. There is a dedicated discussion forum created, see the doc for the link. openrelik.org/docs/designs/o…

Johan Berggren (@jberggren) 's Twitter Profile Photo

Great talk from Jessica Wilson on open-source #DFIR tools and workflows! - "Forensic Flows, but make them better" youtu.be/oiPumjLLpKk?si…

Johan Berggren (@jberggren) 's Twitter Profile Photo

Another #OpenRelik design proposal just dropped by Ramses de Beer! ā˜ļøCloud Manager - building a seamless integration with cloud disks. Comments welcome! openrelik.org/docs/designs/c…

Eric Capuano - Bsky: @eric.zip (@eric_capuano) 's Twitter Profile Photo

This is legit. Might be the easiest DFIR automation workflow tool I've seen yet. Took ~2 minutes to setup with docker compose, and only seconds to generate some Hayabusa outputs. I feel like I am only scratching the surface of what's possible, can't wait to dig in deeperšŸ”„

This is legit. Might be the easiest DFIR automation workflow tool I've seen yet. Took ~2 minutes to setup with docker compose, and only seconds to generate some Hayabusa outputs. 

I feel like I am only scratching the surface of what's possible, can't wait to dig in deeperšŸ”„
Johan Berggren (@jberggren) 's Twitter Profile Photo

Introducing our simple Python API client for #OpenRelik. Enjoy seamless authentication and session handling, enabling you to focus on building your applications. pip install openrelik-api-client

Introducing our simple Python API client for #OpenRelik. Enjoy seamless authentication and session handling, enabling you to focus on building your applications.

pip install openrelik-api-client
Johan Berggren (@jberggren) 's Twitter Profile Photo

Install OpenRelik in under 60 seconds(!) with the improved deployment script (sped-up video for demo). New feature: Local authentication with username/password has been added. No more fiddling with OAuth just to get started.

Johan Berggren (@jberggren) 's Twitter Profile Photo

New in #OpenRelik: Artifact Extraction worker! Extract files from disk images using ForensicArtifact definitions and integrate it into your existing workflows. Thanks to Ramses de Beer for the contribution! #forensics #DFIR

Johan Berggren (@jberggren) 's Twitter Profile Photo

#DFIR Tip of the day: You need to examine IndexedDB or LevelDB? Take a look at this tool from Syd github.com/google/dfindex…

Yamato Security Tools (@securityyamato) 's Twitter Profile Photo

Updated our Hayabusa documentation on support for Sigma correlation rules and updated our aggregation rules to use them: github.com/Yamato-Securit… We are also getting close to full support for the Sigma v2 specification! github.com/Yamato-Securit…

Updated our Hayabusa documentation on support for Sigma correlation rules and updated our aggregation rules to use them: github.com/Yamato-Securit…

We are also getting close to full support for the Sigma v2 specification!
github.com/Yamato-Securit…
LimaCharlie (@limacharlieio) 's Twitter Profile Photo

This week’s Defender Fridays features Johan Berggren, Staff Security Engineer at Google. Johan will be discussing OpenRelik - an OSS platform designed for collaborative digital forensic investigations. Join us every Friday: lc.pub/3Nzs4bL #cybersecurity #infosec #dfir

This week’s Defender Fridays features <a href="/jberggren/">Johan Berggren</a>, Staff Security Engineer at <a href="/Google/">Google</a>. Johan will be discussing OpenRelik - an OSS platform designed for collaborative digital forensic investigations.

Join us every Friday: lc.pub/3Nzs4bL

#cybersecurity #infosec #dfir
Johan Berggren (@jberggren) 's Twitter Profile Photo

Access your #OpenRelik server from your Tailscale tailnet with this new guide. Tailscale is awesome for simplifying secure network access, and this guide makes it easy to integrate with your existing OpenRelik Docker containers. openrelik.org/guides/tailsca…

Johan Berggren (@jberggren) 's Twitter Profile Photo

āš”ļø Introducing the OpenRelik Community Discord Server! A dedicated space for technical conversation around the OpenRelik platform. šŸ”— Join now to connect, share your ideas and learn from other #DFIR practitioners! discord.gg/rTxr2HXUKU

Yamato Security Tools (@securityyamato) 's Twitter Profile Photo

Great demo of OpenRelik with Eric Capuano - Bsky: @eric.zip and author Johan Berggren to automate your DFIR workflows for extracting artifacts, processing them with plaso, hayabusa, etc…, and uploading results to Timesketch. youtube.com/watch?v=HxsAhx…

Johan Berggren (@jberggren) 's Twitter Profile Photo

šŸš€ New OpenRelik release Role-based access control, folder sharing, database improvements, optimisations for file listings, chunked file uploads, bug fixes and refactoring efforts to improve stability. šŸ“ openrelik.org/changelog/ šŸ”— discord.gg/hg652gktwX #DFIR

Johan Berggren (@jberggren) 's Twitter Profile Photo

New #OpenRelik release. Task metrics (queue length, completion, failures etc) & new Prometheus exporter. Plus, a new task dashboard for deep dives into task performance. šŸ“ openrelik.org/changelog/ šŸ”— discord.gg/hg652gktwX #DFIR

New #OpenRelik release. Task metrics (queue length, completion, failures etc) &amp; new Prometheus exporter. Plus, a new task dashboard for deep dives into task performance. 

šŸ“ openrelik.org/changelog/
šŸ”— discord.gg/hg652gktwX

#DFIR