MacOS forensic collector for Velociraptor. 70 artefacts covering browsers, communications, user activity, persistence, security, logs, file system, and system configuration. Requires FDA for full coverage. Extract with bsdtar to APFS and parse with any open source parsing tool.
☆16May 26, 2026Updated 2 months ago
Alternatives and similar repositories for MacOS-Velociraptor-Collectors
Users that are interested in MacOS-Velociraptor-Collectors are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Open-source desktop workbench for digital forensic analysis. Inspect ZIP/TAR/7z archives and iTunes/Android backups. Parse and view ABX, …☆39Updated this week
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.☆22Sep 30, 2022Updated 3 years ago
- Browse Windows Recycle Bin from E01 forensic images with Explorer-style interface. Parse $I/$R artifacts, view deleted files in original …☆18Dec 16, 2025Updated 7 months ago
- Browser extension blocking scam and phishing pages https://chromewebstore.google.com/detail/nehboro/ljgklnaofelbcnegjniagpmjknkmaiom☆15Apr 22, 2026Updated 3 months ago
- A hex viewer for the sleuths!☆20Nov 7, 2025Updated 8 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- ☆30Feb 12, 2026Updated 5 months ago
- Dissectify — macOS Forensic Analysis Toolkit. Collection health validation, 61 artifact parsers, XLSX export, and Velociraptor collector …☆50Jun 1, 2026Updated 2 months ago
- A preconfigured Velociraptor triage collector☆77Jun 29, 2026Updated last month
- A modified fork of Be.HexEditor for use in debug tools☆15Jan 5, 2022Updated 4 years ago
- ☆84Feb 4, 2026Updated 6 months ago
- Generate realistic synthetic security logs for cybersecurity threat hunting training and research☆199Updated this week
- Windows Forensics Salt States☆22Jul 29, 2026Updated last week
- Linux Memory Forensics Framework That Transforms Memory Dumps Into a Navigable Filesystem☆195Jul 4, 2026Updated last month
- $I30 INDX Carver☆18Jun 23, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Volume Shadow Copy Explorer☆15Nov 23, 2025Updated 8 months ago
- StickyParser - Sticky Notes Forensic. A Windows Sticky Notes Praser (snt and plum.sqlite supported). Additional Feature: SQLite Recovery …☆22Jul 18, 2023Updated 3 years ago
- A simple script to decrypt obscured/encrypted passwords from rclone☆29Feb 26, 2023Updated 3 years ago
- Repo to hold mcp server for velociraptor☆40Apr 15, 2026Updated 3 months ago
- ☆36Jan 11, 2023Updated 3 years ago
- Google Filestream Forensic Tool☆22Mar 10, 2022Updated 4 years ago
- PowerShell-based Automation of Defender for Endpoint☆197Jul 3, 2025Updated last year
- DFIR Timeline Analysis for macOS — SQLite-backed viewer for CSV, TSV, XLSX, EVTX, Plaso, $MFT, and $J files with AI Artifacts, AI Secret …☆302Jul 27, 2026Updated last week
- KustoHawk is a lightweight incident triage and response tool designed for effective incident response in Microsoft Defender XDR and Micro…☆158Apr 1, 2026Updated 4 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Windows symbol tables for Volatility 3☆98Jul 11, 2024Updated 2 years ago
- A unified investigation cockpit built for CSIRT / SOC / DFIR teams. Ingest, correlate and visualise any forensic source in a real-time in…☆40Jul 30, 2026Updated last week
- ☆23Mar 12, 2025Updated last year
- CryptnetURLCacheParser is a tool to parse CryptAPI cache files☆22Aug 3, 2024Updated 2 years ago
- A series of python scripts to extract information from SQLite Data Files☆22Nov 15, 2025Updated 8 months ago
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (ext4, XFS) journals (not systemd-journald logs), gene…☆112Apr 8, 2026Updated 3 months ago
- A tool for AWS incident response, that allows for enumeration, acquisition and analysis of data from AWS environments for the purpose of …☆204Jan 6, 2026Updated 6 months ago
- ESXi Cyber Security Incident Response Script☆28Sep 4, 2024Updated last year
- Publicly shareable windows event log message data☆29Nov 29, 2019Updated 6 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Detect It Easy but in your browser.☆22Jul 10, 2026Updated 3 weeks ago
- The core libraries of the Open Computer Forensics Architecture (OCFA)☆14Jul 5, 2012Updated 14 years ago
- Comprehensive adversary emulation tool for security testing on Google Cloud Platform (GCP) environments.☆14Jun 14, 2024Updated 2 years ago
- Windows event log anomaly detection powered by ATPA technologies☆26Dec 22, 2022Updated 3 years ago
- A repo that contains links to projects by members of the Digital Forensics Discord Server! This is meant to help promote projects made by…☆24Apr 23, 2026Updated 3 months ago
- FIT is a modular suite of Python applications for digital forensic acquisition of online contents such as web pages, emails, social media…☆104Mar 6, 2026Updated 5 months ago
- Turn a supported list of filetypes (e.g. .docx) into a markdown structured text file. Also optionally defangs indicators and extract text…☆12Updated this week