Alternatives

Ir Rescue alternatives for AI agents.

Compare similar skills by workflow fit, trust score, quality, GitHub adoption, maintenance, and install readiness.

Current skill

Ir Rescue

A Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.

48
Quality
68
Trust
489
Stars
#1

Hayabusa

Similarity 140Trust 95Excellent 100

Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

3.2K starsJun 7, 2026 pushdevopsRustIncident Response
$ npx skills add Yamato-Security/hayabusa
#2

Volatility3

Similarity 131Trust 89Excellent 100

Volatility 3.0 development

4.2K starsMay 26, 2026 pushdevopsPythonIncident Response
$ npx skills add volatilityfoundation/volatility3
#3

Uac

Similarity 130Trust 91Excellent 100

UAC is a powerful and extensible incident response tool designed for forensic investigators, security analysts, and IT professionals. It automates the collection of artifacts from a wide range of Unix-like systems, including AIX, ESXi, FreeBSD, Linux, macOS, NetBSD, NetScaler, OpenBSD and Solaris.

1.4K starsMay 28, 2026 pushdevopsShellIncident Response
$ npx skills add tclahr/uac
#4

My Arsenal Of Aws Security Tools

Similarity 125Trust 91Excellent 100

List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.

9.5K starsApr 17, 2026 pushdevopsShellIncident Response
$ npx skills add toniblyx/my-arsenal-of-aws-security-tools
#5

Sleuthkit

Similarity 123Trust 90Excellent 100

The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file system data. The library can be incorporated into larger digital forensics tools and the command line tools can be directly used to find evidence.

3.1K starsJun 12, 2026 pushdevopsCIncident Response
$ npx skills add sleuthkit/sleuthkit
#6

Live Forensicator

Similarity 123Trust 80Strong 80

Cross-platform incident response and live forensics toolkit with built-in detection, structured analysis, and report generation — designed for fast, actionable security investigations.

623 starsJun 13, 2026 pushdevopsPowerShellIncident Response
$ npx skills add Johnng007/Live-Forensicator
#7

Cyberchef Recipes

Similarity 122Trust 79Promising 69

A list of cyber-chef recipes and curated links

2.2K starsJun 14, 2024 pushdevopsIncident ResponseClaude Code
$ npx skills add mattnotmax/cyberchef-recipes
#8

Forensictools

Similarity 122Trust 82Strong 76

Collection of forensic tools

695 starsJan 12, 2026 pushdevopsInno SetupIncident Response
$ npx skills add cristianzsh/forensictools
#9

AiSOC

Similarity 122Trust 93Excellent 100

Open-source AI-powered Security Operations Center — alert fusion, purple-team drills, agent-assisted triage, MITRE ATT&CK investigation. MIT-licensed, self-hostable.

1.4K starsJun 15, 2026 pushdevopsPythonIncident Response
$ npx skills add beenuar/AiSOC
#10

Cortex

Similarity 122Trust 91Excellent 100

Cortex: a Powerful Observable Analysis and Active Response Engine

1.6K starsMay 20, 2026 pushdevopsScalaIncident Response
$ npx skills add TheHive-Project/Cortex
#11

RdpCacheStitcher

Similarity 121Trust 71Needs review 46

RdpCacheStitcher is a tool that supports forensic analysts in reconstructing useful images out of RDP cache bitmaps.

328 starsSep 3, 2023 pushdevopsC++Incident Response
$ npx skills add BSI-Bund/RdpCacheStitcher
#12

Intelmq

Similarity 121Trust 93Excellent 96

IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.

1.1K starsApr 28, 2026 pushdevopsPythonIncident Response
$ npx skills add certtools/intelmq
#13

CyberThreatHunting

Similarity 118Trust 77Promising 56

A collection of resources for Threat Hunters

915 starsOct 15, 2024 pushdevopsPythonIncident Response
$ npx skills add A3sal0n/CyberThreatHunting
#14

Fame

Similarity 118Trust 86Excellent 87

FAME Automates Malware Evaluation

941 starsJun 13, 2026 pushdevopsPythonIncident Response
$ npx skills add certsocietegenerale/fame
#15

AzureHunter

Similarity 117Trust 74Promising 55

A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365

790 starsOct 29, 2022 pushdevopsPowerShellIncident Response
$ npx skills add darkquasar/AzureHunter
#16

Catalyst

Similarity 116Trust 88Strong 84

⚡️ Catalyst is a self-hosted, open source incident response platform and ticket system that helps to automate alert handling and incident response processes

530 starsJun 2, 2026 pushdevopsVueIncident Response
$ npx skills add SecurityBrewery/catalyst

How to choose

When should you switch?

Use an alternative when it has a clearer install path, higher trust score, fresher maintenance, or better platform fit for your current agent stack. Keep Ir Rescue if it already passes your workflow test and repository review.

Next step

Compare top candidates side by side

Open the compare page, test the install commands in a sandbox, and check each repository before using a skill in production.