ForensicRS / forensic-rs
Forensic framework to build tools that can be reused in multiple projects without changing anything
☆26Updated 3 weeks ago
Alternatives and similar repositories for forensic-rs:
Users that are interested in forensic-rs are comparing it to the libraries listed below
- A cross platform forensic parser written in Rust!☆80Updated this week
- A document tagging library☆29Updated this week
- lnk_parser is a full rust implementation to parse windows LNK files☆17Updated 2 months ago
- Rust bindings to Microsoft Windows users / groups management API☆33Updated last year
- An (WIP) EDR Evasion tool for x64 Windows & Linux binaries that utilizes Nanomites, written in Rust.☆18Updated 3 months ago
- Imphash-like calculation on Golang binaries☆49Updated 2 years ago
- Collection of generic YARA rules☆15Updated 9 months ago
- ShellOrd is a C2 (Command & Control) framework cross-platform and agent written in Rust & Java☆14Updated 6 months ago
- Manage Your Large Team of Consultants☆11Updated last month
- Keep it secret, keep it safe☆77Updated last month
- Parsers for common structures across windows formats.☆12Updated last year
- Native Rust bindings for @horsicq's Detect-It-Easy☆13Updated 2 months ago
- Hardened your Windows OS against forensics analysis☆20Updated 4 months ago
- Linux #rootkit and #malware revealer☆24Updated 7 months ago
- Windows eventlog formatting, live fetching and querying utility in C☆18Updated 4 years ago
- Collection of Windows Driver Utils☆11Updated last year
- RustHunter is a modular incident response framework based on Rust and Ansible to build and compare environmental baselines.☆18Updated 2 years ago
- rpv-web is a browser based frontend for the rpv library☆24Updated 7 months ago
- Scanner for certain IoCs☆11Updated last month
- A rust based DLL injection project☆30Updated 2 years ago
- A library and cli tool to extract HWP files.☆20Updated 2 months ago
- Open Source eBPF Malware Analysis Framework☆47Updated 5 months ago
- File Capability Extractor☆13Updated this week
- Windows file metadata / forensic tool.☆18Updated 6 months ago
- Vovk is framework of tools that include a WinDbg extension that generates in-depth YARA rules for malware.☆22Updated 7 months ago
- Exfiltrate data over audio output from remote desktop sessions - Covert channel PoC☆31Updated 3 months ago
- ETW forensic tool for Volatility3 plugin☆11Updated 4 months ago
- ☆22Updated 5 months ago
- ☆39Updated last year
- Safe Rust API to libesedb☆10Updated last year