Skip to content

Installation

Bobby Argenbright edited this page Oct 20, 2015 · 11 revisions

Installation

Database Setup

lib/core/database.py

CIRTKit requires a database to store malware artifacts and investigation data. Currently, CIRTKit is equipped to use SQLite and Postgres SQL databases. If you need to have multiple analysts collaborate on investigations, then you need to setup CIRTKit to use Postgres, otherwise if you want to store information locally, you can use SQLite.

  • SQLite

For SQLite, you can simply run CIRTKit, and it will create and connect to a local SQLite file. Or you can specify the connection string to use a different file.

  • Postgres

Setup your Postgres database and edit the lines at the top of the database.py with the credentials for the database you just configured.

DB_USER = '<username>'
DB_PASSWD = '<password>'

Install Dependencies

You can install decencies with pip (Python packaging system) using the provided requirements.txt file "pip install -r requirements.txt"

Execute

python cirtkity.py

You can also specify the '-i' flag and specify a specific investigation. If it does not exist, CIRTKit will create a new investigation

Clone this wiki locally