Modular Forensic Analysers
DRONE’s modular architecture passes forensic evidence through a number of relevant analysers to find the anomalies for you.
Find the relevant events in your digital forensic evidence quicker and with less resources using DRONE, AIR’s rapid, assisted compromise assessment module.
DRONE’s modular architecture passes forensic evidence through a number of relevant analysers to find the anomalies for you.
Our proprietary scoring algorithms deliver findings, verdicts and scores to guide your decision making processes and significantly speed up the investigation.
DRONE has embedded YARA and Sigma scanning capabilities on live endpoint assets allowing concurrent scanning at enterprise scale.
DRONE’s flexible keyword, regex and wildcard searching capabilities provide powerful compromise assessment in just a few minutes. Search for domains, IP addresses, file names, hashes and much more.
In just a few minutes DRONE enriches the evidence acquisition report flagging events of interest on a scale of severity.
Rapid and simple zero-config deployment directly from the AIR management console as part of the wider evidence acquisition process.