ESXi Cyber Security Incident Response Script
☆25Sep 4, 2024Updated last year
Alternatives and similar repositories for ESXiTri
Users that are interested in ESXiTri are comparing it to the libraries listed below
Sorting:
- CryptnetURLCacheParser is a tool to parse CryptAPI cache files☆21Aug 3, 2024Updated last year
- Just Another broken Registry Parser (JARP)☆16May 23, 2024Updated last year
- Yet another fseventsd parser for macOS forensics☆12Jul 20, 2024Updated last year
- ☆54May 14, 2024Updated last year
- ☆36Jan 11, 2023Updated 3 years ago
- Browse Windows Prefetch versions: 17,23,26,30v1/2,31 & some of SuperFetch .7db/.db's☆64Dec 18, 2024Updated last year
- An execute-assembly compatible tool for spraying local admin hashes on an Active Directory domain.☆18Apr 30, 2021Updated 4 years ago
- Vault of Windows Registry forensic artifacts☆28Nov 12, 2025Updated 4 months ago
- A library to parse macOS FsEvents☆24Aug 28, 2022Updated 3 years ago
- A collection of Terraform and Ansible scripts that automatically (and quickly) deploys a small Velociraptor R&D lab.☆22Apr 16, 2021Updated 4 years ago
- Carve file metadata from NTFS index ($I30) attributes☆71Feb 3, 2024Updated 2 years ago
- Parser for Sdba memory pool tags☆21Jul 16, 2021Updated 4 years ago
- A collection of Script for Red Team & Incidence Response☆11Jun 30, 2022Updated 3 years ago
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.☆21Sep 30, 2022Updated 3 years ago
- MAES: M365 Analyzer & Extractor Suite Po☆33Feb 14, 2026Updated last month
- We took PersistenceSniper, merged it with Python, and misspelled it on purpose. Meet PyrsistenceSniper.☆57Updated this week
- Windows Forensics Salt States☆21Mar 11, 2026Updated last week
- A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID☆578Dec 6, 2025Updated 3 months ago
- Rapidly Search and Hunt through Linux Forensics Artifacts☆202Mar 9, 2026Updated last week
- ALFA stands for Automated Audit Log Forensic Analysis for Google Workspace. You can use this tool to acquire all Google Workspace audit l…☆173Mar 2, 2026Updated 2 weeks ago
- Python web app for previewing data in a Chrome Profile Folder☆24Jul 1, 2024Updated last year
- Evtx Log (xml) Browser☆56Mar 12, 2023Updated 3 years ago
- Useful windows tools for Blue, Red & Purple teams☆11Mar 8, 2026Updated last week
- NTFS Security Descriptor Stream ($Secure:$SDS) parser☆14Jan 9, 2023Updated 3 years ago
- Automatic/Custom Destinations & LNK (MS-SHLLINK) Browser☆45Mar 13, 2026Updated last week
- Incident Response Network Tools☆24Jul 23, 2021Updated 4 years ago
- Google Filestream Forensic Tool☆22Mar 10, 2022Updated 4 years ago
- Carve $MFT records from a chunk of data (for instance a memory dump)☆16Aug 21, 2016Updated 9 years ago
- Backstage Parser☆33Jun 23, 2022Updated 3 years ago
- Initial triage of Windows Event logs☆106Jun 16, 2024Updated last year
- Tool to extract Sessions, MessageID(s) and find the emails belonging to MessageID(s). This script utilizes the MailItemsAccessed features…☆41Oct 20, 2020Updated 5 years ago
- A free incident response management and documentation workbook☆25Nov 13, 2018Updated 7 years ago
- ☆24Mar 12, 2025Updated last year
- PS-TrustedDocuments: PowerShell script to handle information on trusted documents for Microsoft Office☆37Mar 15, 2023Updated 3 years ago
- ☆14Dec 24, 2019Updated 6 years ago
- The Office 365 Extractor is a tool that allows for complete and reliable extraction of the Unified Audit Log (UAL)☆267Feb 3, 2022Updated 4 years ago
- Decloak Linux stealth rootkits hiding data with this simple memory mapped IO investigation tool.☆29Sep 29, 2025Updated 5 months ago
- Repo to hold my PowerShell Scripts☆17Oct 19, 2022Updated 3 years ago
- A tool to identify and remediate common misconfigurations in Active Directory Certificate Services☆18Jan 13, 2024Updated 2 years ago