LDO-CERT / orochi
The Volatility Collaborative GUI
☆240Updated this week
Alternatives and similar repositories for orochi:
Users that are interested in orochi are comparing it to the libraries listed below
- A python script developed to process Windows memory images based on triage type.☆261Updated last year
- The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifa…☆582Updated last week
- A repo that contains recursive directory listings (using PowerShell) of a vanilla (clean) install of every Windows OS version to compare …☆154Updated 3 months ago
- An easy to use PowerShell script to collect memory and disk forensics for DFIR investigations.☆279Updated 7 months ago
- 🧭 The artifactcollector is a customizable agent to collect forensic artifacts on any Windows, macOS or Linux system☆281Updated last month
- This repository contains helper scripts and custom configs to get the best out of Google's Timesketch project.☆107Updated last year
- Malduck is your ducky companion in malware analysis journeys☆326Updated 9 months ago
- ☆124Updated 3 weeks ago
- A toolkit for the post-mortem examination of Docker containers from forensic HDD copies☆98Updated last year
- MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR☆592Updated last week
- Live forensic artifacts collector☆165Updated 8 months ago
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆163Updated last year
- Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.☆165Updated this week
- Rules generated from our investigations.☆192Updated this week
- Memory acquisition for Linux that makes sense.☆181Updated last year
- ☆514Updated 5 months ago
- Digital Forensics Artifacts Knowledge Base☆79Updated 10 months ago
- Repository of public reference frameworks for the DFIR community.☆115Updated last year
- Malware repository component for samples & static configuration with REST API interface.☆342Updated 2 weeks ago
- ☆200Updated last year
- Threat Hunting tool about Sysmon and graphs☆330Updated last year
- Get all my software☆152Updated 2 months ago
- A repository of DFIR-related Mind Maps geared towards the visual learners!☆516Updated 2 years ago
- A repo hosting the Markua content for the EZ Tools manuals hosted on Leanpub☆67Updated last year
- Windows Forensics Environment Builder☆131Updated 2 months ago
- Rules shared by the community from 100 Days of YARA 2024☆85Updated 2 months ago
- Harness the power of Splunk for your investigations☆92Updated last week
- Parses $MFT from NTFS file systems☆229Updated this week
- The official repo for a project involving a crowdsourced DFIR book. The main purpose of this book is to give anyone interested an opportu…☆205Updated last month
- A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters …☆215Updated this week