Johan Berggren Profile
Johan Berggren

@jberggren

Followers
2K
Following
1K
Media
55
Statuses
885

DFIR @Google :: I write open source tools :: Creator of OpenRelik and Timesketch :: Tweets are my own @[email protected] on Mastodon

Joined August 2010
Don't wanna be here? Send us removal request.
@jberggren
Johan Berggren
11 months
🚀Introducing OpenRelik: Open-source platform for digital forensic investigations. Modular workflows, collaboration, central artifact repository and easily extendable to support new tools in a clean, easy to use interface.
openrelik.org
OpenRelik OpenRelik is an open-source (Apache-2.0) platform designed to streamline collaborative digital forensic investigations. It combines modular workflows for custom investigative processes, an...
6
88
230
@jberggren
Johan Berggren
2 months
RT @nextronsystems: We’ve released a CLI utility to transform THOR logs into Timesketch-compatible JSONL for timeline analysis. Correlate f….
0
10
0
@grok
Grok
5 days
Generate videos in just a few seconds. Try Grok Imagine, free for a limited time.
349
635
2K
@jberggren
Johan Berggren
2 months
RT @cyb3rops: We’ve been working on this for a few months - getting the THOR-to-Timesketch integration right meant building not just the CL….
0
17
0
@jberggren
Johan Berggren
8 months
New #OpenRelik release. Task metrics (queue length, completion, failures etc) & new Prometheus exporter. Plus, a new task dashboard for deep dives into task performance. 📝 🔗 #DFIR
Tweet media one
0
2
12
@jberggren
Johan Berggren
9 months
🚀 New OpenRelik release. Role-based access control, folder sharing, database improvements, optimisations for file listings, chunked file uploads, bug fixes and refactoring efforts to improve stability. 📝 🔗 #DFIR.
discord.com
Check out the OpenRelik community on Discord - hang out with 86 other members and enjoy free voice and text chat.
0
6
7
@jberggren
Johan Berggren
9 months
RT @SecurityYamato: Great demo of OpenRelik with @eric_capuano and author @jberggren to automate your DFIR workflows for extracting artifac….
0
16
0
@jberggren
Johan Berggren
10 months
⚡️ Introducing the OpenRelik Community Discord Server!. A dedicated space for technical conversation around the OpenRelik platform. 🔗 Join now to connect, share your ideas and learn from other #DFIR practitioners!.
discord.com
Check out the OpenRelik community on Discord - hang out with 86 other members and enjoy free voice and text chat.
0
0
6
@jberggren
Johan Berggren
10 months
Access your #OpenRelik server from your @Tailscale tailnet with this new guide. Tailscale is awesome for simplifying secure network access, and this guide makes it easy to integrate with your existing OpenRelik Docker containers.
1
1
15
@jberggren
Johan Berggren
10 months
RT @limacharlieio: This week’s Defender Fridays features @jberggren, Staff Security Engineer at @Google. Johan will be discussing OpenRelik….
0
1
0
@jberggren
Johan Berggren
10 months
RT @SecurityYamato: Updated our Hayabusa documentation on support for Sigma correlation rules and updated our aggregation rules to use them….
0
18
0
@jberggren
Johan Berggren
10 months
Just added Google AI support. Google AI Studio is the frontend for experimentation. It gives you access to Gemini using a simple API key. Very easy to get started.
0
0
0
@jberggren
Johan Berggren
10 months
OpenRelik now supports local and cloud-based LLMs for developers. Integrate local models (Ollama) or Gemini (VertexAI) into your workers. Easy access to artifacts and extendable with more providers as needed. ✨. What #DFIR capabilities would you build? Share your ideas! 👇
Tweet media one
1
1
11
@jberggren
Johan Berggren
10 months
#DFIR Tip of the day: You need to examine IndexedDB or LevelDB? Take a look at this tool from @SydVP .
Tweet card summary image
github.com
Contribute to google/dfindexeddb development by creating an account on GitHub.
0
2
16
@jberggren
Johan Berggren
10 months
New in #OpenRelik: Artifact Extraction worker! Extract files from disk images using ForensicArtifact definitions and integrate it into your existing workflows. Thanks to Ramses de Beer for the contribution! #forensics #DFIR
3
19
55
@jberggren
Johan Berggren
11 months
Install OpenRelik in under 60 seconds(!) with the improved deployment script (sped-up video for demo). New feature: Local authentication with username/password has been added. No more fiddling with OAuth just to get started.
3
10
66
@jberggren
Johan Berggren
11 months
Introducing our simple Python API client for #OpenRelik. Enjoy seamless authentication and session handling, enabling you to focus on building your applications. pip install openrelik-api-client
Tweet media one
0
0
5
@jberggren
Johan Berggren
11 months
RT @eric_capuano: This is legit. Might be the easiest DFIR automation workflow tool I've seen yet. Took ~2 minutes to setup with docker com….
0
42
0
@jberggren
Johan Berggren
11 months
Great talk from Jessica Wilson on open-source #DFIR tools and workflows! - "Forensic Flows, but make them better"
0
4
14
@jberggren
Johan Berggren
11 months
I just published the #OpenRelik design document. It's a high level but pretty detailed description of the system. RFC: Comments, suggestions (and rants) are much appreciated. There is a dedicated discussion forum created, see the doc for the link.
openrelik.org
Author: Johan Berggren Published: Sep 2024 Document version: 1.0 Status: Final ℹ️ Request for comments: If you have questions, comments or suggestions on this design, please share with the community...
0
6
22
@jberggren
Johan Berggren
11 months
2. Timesketch - Export timelines effortless to your Timesketch server. Automatically create sketches from your workflows and get a direct link in OpenRelik for quick access.
1
0
11