PyVelociraptor contains the python bindings for the Velociraptor API.
☆21Feb 11, 2026Updated 3 weeks ago
Alternatives and similar repositories for pyvelociraptor
Users that are interested in pyvelociraptor are comparing it to the libraries listed below
Sorting:
- An experimental Velociraptor implementation using cloud infrastructure☆26Dec 2, 2025Updated 3 months ago
- Sample queries for Advanced hunting in Windows Defender ATP☆11Apr 22, 2020Updated 5 years ago
- ☆12Aug 27, 2025Updated 6 months ago
- Netwitness Maltego integration Project☆18May 9, 2017Updated 8 years ago
- CLI generator for Velociraptor offline collector☆16Oct 10, 2025Updated 4 months ago
- ☆11Apr 2, 2022Updated 3 years ago
- Documentation site for Velociraptor☆68Feb 27, 2026Updated last week
- Hunt the windows Registry automatically using VQL☆14Jan 6, 2026Updated last month
- VelociraptorMCP is a Model Context Protocol bridge for exposing LLMs to MCP clients.☆70Aug 20, 2025Updated 6 months ago
- Information about the open-source-dfir slack community☆30Jun 17, 2023Updated 2 years ago
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- Docker image for Velocidex Velociraptor☆147Dec 29, 2025Updated 2 months ago
- ☆14Oct 24, 2024Updated last year
- A parser for the MFT (Master File Table) format☆156Jan 3, 2026Updated 2 months ago
- VMDK Forensic Artifact Extractor (VFAE) is windows based tool written in C++ that extracts files with a known location from VMDK images r…☆17Aug 7, 2015Updated 10 years ago
- ☆70Feb 15, 2026Updated 2 weeks ago
- ☆22Jan 31, 2023Updated 3 years ago
- Library of threat hunts to get any user started!☆50Sep 4, 2020Updated 5 years ago
- Cumulonimbus-UAL_Extractor is a PowerShell based tool created by the Tesorion CERT team to help gather the Unified Audit Logging out of a…☆21Oct 25, 2023Updated 2 years ago
- Legacy Sigma Tools (sigmac etc.)☆16May 7, 2023Updated 2 years ago
- ☆22Aug 29, 2024Updated last year
- A collection of Terraform and Ansible scripts that automatically (and quickly) deploys a small Velociraptor R&D lab.☆22Apr 16, 2021Updated 4 years ago
- Playwright docker alpine with nodejs (477MB). Based on official node:14.16-alpine image.☆24May 12, 2021Updated 4 years ago
- ☆24Mar 12, 2025Updated 11 months ago
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆24Jul 9, 2021Updated 4 years ago
- Forensic framework to build tools that can be reused in multiple projects without changing anything☆31Oct 17, 2025Updated 4 months ago
- ☆26Aug 20, 2025Updated 6 months ago
- An advanced parser for INDX records☆29Aug 7, 2019Updated 6 years ago
- Hunt for SQLite files used by various applications☆30Jan 31, 2026Updated last month
- A framework for synthesizing lateral movement login data.☆27May 20, 2021Updated 4 years ago
- Scrapes Audit Logs From Cloudflare and Streams to Std Out☆11May 6, 2025Updated 10 months ago
- Threat hunting repo for my independent study on threat hunting with OSQuery☆27Jan 16, 2018Updated 8 years ago
- This repository contains helper scripts and custom configs to get the best out of Google's Timesketch project.☆118Oct 8, 2023Updated 2 years ago
- Publicly shareable windows event log message data☆28Nov 29, 2019Updated 6 years ago
- A parser of Windows Defender's DetectionHistory forensic artifact, containing substantial info about quarantined files and executables.☆117Jan 26, 2022Updated 4 years ago
- Windows 10 (v1803+) ActivitiesCache.db parsers (SQLite, PowerShell, .EXE)☆196Feb 16, 2023Updated 3 years ago
- Recon Hunt Queries☆79May 16, 2021Updated 4 years ago
- GigaDrop allows you to easily and securely share files directly between devices without uploading them to any server first☆11Sep 4, 2022Updated 3 years ago
- Forensic tool for acquisition, triage and analysis of remote block devices via iSCSI protocol.☆44Oct 25, 2024Updated last year