ForensicRS / forensic-rs
Forensic framework to build tools that can be reused in multiple projects without changing anything
☆27Updated last month
Alternatives and similar repositories for forensic-rs:
Users that are interested in forensic-rs are comparing it to the libraries listed below
- Keep it secret, keep it safe☆77Updated 2 months ago
- A cross platform forensic parser written in Rust!☆80Updated 2 weeks ago
- A document tagging library☆30Updated 3 weeks ago
- lnk_parser is a full rust implementation to parse windows LNK files☆18Updated 3 months ago
- Ghidra script for extracting embedded Rust crate dependency strings from a compiled Rust binary☆29Updated 2 years ago
- RustHunter is a modular incident response framework based on Rust and Ansible to build and compare environmental baselines.☆18Updated 2 years ago
- File Capability Extractor☆13Updated last month
- Parsers for common structures across windows formats.☆12Updated last year
- Hardened your Windows OS against forensics analysis☆21Updated 4 months ago
- ☆19Updated 5 months ago
- Simple Project that Extracts PE Information.☆16Updated 3 weeks ago
- ETW forensic tool for Volatility3 plugin☆13Updated 5 months ago
- Native Rust bindings for @horsicq's Detect-It-Easy☆13Updated 3 months ago
- Rust bindings to Microsoft Windows users / groups management API☆33Updated last year
- Vovk is framework of tools that include a WinDbg extension that generates in-depth YARA rules for malware.☆22Updated 7 months ago
- An (WIP) EDR Evasion tool for x64 Windows & Linux binaries that utilizes Nanomites, written in Rust.☆18Updated 4 months ago
- Malware Muncher is a proof-of-concept Python script that utilizes the Frida framework for binary instrumentation and API hooking, enablin…☆44Updated 2 years ago
- Scripts and tools created for appx analysis talk (Magnet summit 2019)☆16Updated last year
- Windows file metadata / forensic tool.☆18Updated 7 months ago
- Scanner for certain IoCs☆11Updated 2 months ago
- This repository contains a variety of plugins and scripts, related to the Volatility framework.☆12Updated 2 months ago
- Malkom is an extensible and simple similarity graph generator for malware analysis aimed at helping analysts visualize and cluster sets o…☆16Updated 2 years ago
- Imphash-like calculation on Golang binaries☆49Updated 2 years ago
- MalStatWare automates malware analysis with Python. Extract key details like file size, type, hash, path, and digital signature. It analy…☆29Updated 11 months ago
- Windows Event Log Knowledge Base☆23Updated 6 months ago
- Shared library loading application for Linux written in Go.☆16Updated 4 years ago
- ☆22Updated 6 months ago
- Windows eventlog formatting, live fetching and querying utility in C☆18Updated 4 years ago
- Collection of tips, tools, arsenal and techniques I've learned during RE and other CyberSecStuff☆54Updated 2 months ago
- Scripts to aid analysis of files obfuscated with ScatterBee.☆20Updated 2 years ago