CybercentreCanada / cartLinks
Python implementation of the CaRT library for (un)inerting files.
☆23Updated 10 months ago
Alternatives and similar repositories for cart
Users that are interested in cart are comparing it to the libraries listed below
Sorting:
- The Dissect module tying all other Dissect modules together. It provides a programming API and command line tools which allow easy access…☆77Updated last week
- Linpmem is a linux memory acquisition tool☆95Updated 6 months ago
- MWDB exercises☆20Updated 11 months ago
- YARA Language Server☆75Updated last month
- Alternative YARA scanning engine☆73Updated 3 years ago
- Linux #rootkit and #malware revealer☆30Updated last year
- A guide on how to write fast and memory friendly YARA rules☆161Updated 10 months ago
- Volatility Symbol Generator for Linux Kernels☆37Updated 2 years ago
- FLARE floss applied to all unpacked+dumped samples in Malpedia, pre-processed for further use.☆62Updated 7 months ago
- Carve file metadata from NTFS index ($I30) attributes☆71Updated last year
- Volatility3 plugins developed and maintained by the community☆61Updated 2 years ago
- ☆150Updated last year
- convert ELF/DWARF symbol and type information into vol3's intermediate JSON☆142Updated last year
- File analysis and management framework.☆92Updated 2 years ago
- Sandbox samples and monitor them with kunai☆29Updated 6 months ago
- ☆23Updated 3 years ago
- Windows Registry Knowledge Base☆191Updated last week
- Collection of rules created using YARA-Signator over Malpedia☆142Updated last year
- ☆20Updated 3 years ago
- This repository contains a variety of plugins and scripts, related to the Volatility framework.☆17Updated 10 months ago
- Imphash-like calculation on Golang binaries☆49Updated 3 years ago
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (ext4, XFS) journals (not systemd-journald logs), gene…☆98Updated last week
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated 2 years ago
- pySigma Elasticsearch backend☆55Updated 2 weeks ago
- A specification and style guide for YARA rules☆63Updated last year
- Automated YARA Rule Standardization and Quality Assurance Tool☆264Updated this week
- Rules shared by the community from 100 Days of YARA 2024☆86Updated last year
- acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.☆113Updated 2 weeks ago
- NTFS samples☆27Updated 5 years ago
- A better strings utility!☆144Updated 4 months ago