ankitforce/agent-forensics-kit
GitHub: ankitforce/agent-forensics-kit
一套面向 AI agent 安全事件的应急响应与数字取证清单及 runbook 模板工具包,帮助团队在事件发生前做好准备工作。
Stars: 0 | Forks: 0
# Agent 取证工具包
这是 Substack 文章的公开配套工具包:
文章:https://ankitkumar3514.substack.com/p/the-agent-forensics-kit
它帮助 AI 平台、安全和基础设施团队在 agent 高速运转的事件发生之前做好准备。
## 您可以在此处使用的内容
- AI-agent 事件的防范准备清单。
- 针对疑似入侵的凭证轮换清单。
- 取证模型策略模板。
- 事件时间线模板。
- 用于准备和审查 runbook 的 Agent 任务说明。
## 从哪里开始
1. 阅读 `checklists/agent-incident-readiness.md`。
2. 使用 `templates/forensic-model-policy.md` 起草您的本地模型规则。
3. 使用 `templates/incident-timeline.md` 进行桌面演练。
4. 使用 `checklists/credential-rotation.md` 定义自动轮换触发条件。
## Agent 可以做什么
Agent 可以将此工具包转化为针对特定组织的事件响应草案,前提是它不摄入 secrets、凭证、私有日志或 exploit payloads。请参阅 `AGENTS.md` 和 `agent/tasks.md`。
## 排除的内容
此代码库不包含 exploit 代码、私有事件日志、凭证、客户数据、浏览器配置文件、Substack 工具或本地工作区路径。
标签:网络安全研究, 防御加固