MacOS forensic collector for Velociraptor. 70 artefacts covering browsers, communications, user activity, persistence, security, logs, file system, and system configuration. Requires FDA for full coverage. Extract with bsdtar to APFS and parse with any open source parsing tool.
☆17May 26, 2026Updated 3 months ago
Alternatives and similar repositories for MacOS-Velociraptor-Collectors
Users that are interested in MacOS-Velociraptor-Collectors are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Open-source desktop workbench for digital forensic analysis. Inspect ZIP/TAR/7z archives and iTunes/Android backups. Parse and view ABX, …☆68Updated this week
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.☆22Sep 30, 2022Updated 3 years ago
- Browse Windows Recycle Bin from E01 forensic images with Explorer-style interface. Parse $I/$R artifacts, view deleted files in original …☆18Dec 16, 2025Updated 9 months ago
- A hex viewer for the sleuths!☆20Nov 7, 2025Updated 10 months ago
- A preconfigured Velociraptor triage collector☆78Aug 10, 2026Updated last month
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A modified fork of Be.HexEditor for use in debug tools☆15Jan 5, 2022Updated 4 years ago
- ☆84Feb 4, 2026Updated 7 months ago
- Windows Forensics Salt States☆22Updated this week
- $I30 INDX Carver☆18Jun 23, 2025Updated last year
- ☆30Feb 12, 2026Updated 7 months ago
- Dissectify — macOS Forensic Analysis Toolkit. Collection health validation, 61 artifact parsers, XLSX export, and Velociraptor collector …☆52Aug 17, 2026Updated last month
- Browser extension blocking scam and phishing pages https://chromewebstore.google.com/detail/nehboro/ljgklnaofelbcnegjniagpmjknkmaiom☆17Apr 22, 2026Updated 4 months ago
- Volume Shadow Copy Explorer☆17Nov 23, 2025Updated 9 months ago
- StickyParser - Sticky Notes Forensic. A Windows Sticky Notes Praser (snt and plum.sqlite supported). Additional Feature: SQLite Recovery …☆23Jul 18, 2023Updated 3 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Generate realistic synthetic security logs for cybersecurity threat hunting training and research☆265Updated this week
- A simple script to decrypt obscured/encrypted passwords from rclone☆29Feb 26, 2023Updated 3 years ago
- Repo to hold mcp server for velociraptor☆40Apr 15, 2026Updated 5 months ago
- ☆36Jan 11, 2023Updated 3 years ago
- Google Filestream Forensic Tool☆22Mar 10, 2022Updated 4 years ago
- Linux Memory Forensics Framework That Transforms Memory Dumps Into a Navigable Filesystem☆206Jul 4, 2026Updated 2 months ago
- Windows symbol tables for Volatility 3☆99Jul 11, 2024Updated 2 years ago
- A unified investigation cockpit built for CSIRT / SOC / DFIR teams. Ingest, correlate and visualise any forensic source in a real-time in…☆42Updated this week
- ☆23Mar 12, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- PowerShell-based Automation of Defender for Endpoint☆198Jul 3, 2025Updated last year
- CryptnetURLCacheParser is a tool to parse CryptAPI cache files☆24Aug 3, 2024Updated 2 years ago
- DFIR Timeline Analysis for macOS — SQLite-backed viewer for CSV, TSV, XLSX, EVTX, Plaso, $MFT, and $J files with AI Artifacts, AI Secret …☆367Sep 8, 2026Updated last week
- A series of python scripts to extract information from SQLite Data Files☆22Nov 15, 2025Updated 10 months ago
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (ext4, XFS) journals (not systemd-journald logs), gene…☆112Apr 8, 2026Updated 5 months ago
- A tool for AWS incident response, that allows for enumeration, acquisition and analysis of data from AWS environments for the purpose of …☆205Aug 11, 2026Updated last month
- ESXi Cyber Security Incident Response Script☆28Sep 4, 2024Updated 2 years ago
- Publicly shareable windows event log message data☆29Nov 29, 2019Updated 6 years ago
- KustoHawk is a lightweight incident triage and response tool designed for effective incident response in Microsoft Defender XDR and Micro…☆158Apr 1, 2026Updated 5 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Comprehensive adversary emulation tool for security testing on Google Cloud Platform (GCP) environments.☆14Jun 14, 2024Updated 2 years ago
- The core libraries of the Open Computer Forensics Architecture (OCFA)☆15Jul 5, 2012Updated 14 years ago
- Windows event log anomaly detection powered by ATPA technologies☆26Dec 22, 2022Updated 3 years ago
- A repo that contains links to projects by members of the Digital Forensics Discord Server! This is meant to help promote projects made by…☆24Apr 23, 2026Updated 4 months ago
- FIT is a modular suite of Python applications for digital forensic acquisition of online contents such as web pages, emails, social media…☆106Mar 6, 2026Updated 6 months ago
- Turn a supported list of filetypes (e.g. .docx) into a markdown structured text file. Also optionally defangs indicators and extract text…☆12Updated this week
- A parser of Windows Defender's DetectionHistory forensic artifact, containing substantial info about quarantined files and executables.☆120Jan 26, 2022Updated 4 years ago