This is a non-IMPACT record, meaning that access to the data is not controlled by IMPACT. For access, see the directions below.

Disclaimer:
This Resource is offered and provided outside of the IMPACT mediation framework. IMPACT and the IMPACT Coordination Council/Blackfire Technology, Inc. expressly disclaim all conditions, representations and warranties including but not limited to Resource availability, quality, accuracy, non-infringement, and non-interference. All Resource information and access is controlled by entities and under terms that are external to the IMPACT legal framework.

Summary

DS-1344
MIG: Mozilla InvestiGator
External Tool
External Data Source
GitHub
Unknown
Unknown
56 (lowest rank is 56)

Category & Restrictions

Other
cyber defense, forensics
Unrestricted
true

Description


Mozilla's real-time digital forensics and investigation platform.

MIG is a platform to perform investigative surgery on remote endpoints. It enables investigators to obtain information from large numbers of systems in parallel, thus accelerating investigation of incidents and day-to-day operations security. MIG is composed of agents installed on all systems of an infrastructure that are be queried in real-time to investigate the file-systems, network state, memory or configuration of endpoints.

MIG is built in Go and uses a REST API that receives signed JSON messages distributed to agents via RabbitMQ and stored in a Postgres database.
It is:
- Massively Distributed means Fast.
- Simple to deploy and Cross-Platform.
- Secured using OpenPGP.
- Respectful of privacy by never retrieving raw data from endpoints.

Additional Details

30.7MB
false
Unknown
mozilla, mig, mig: mozilla investigator, 1344, investigator, corporation, external, inferlink corporation, inferlink, source, external data source, platform, time, real, investigation, forensics, digital, endpoints, systems, day, agents, distributed, respectful, enables, surgery, postgres, queried, json, incidents, parallel, openpgp, stored, rest, infrastructure, fast, built, perform, cross, rabbitmq, massively, composed, secured, receives, messages, raw, signed, investigative, api, investigators, deploy, remote, installed, other, memory, file, operations, database, security, retrieving, network, investigate, accelerating, privacy, configuration, simple