A document tagging library
☆33Mar 27, 2025Updated 11 months ago
Alternatives and similar repositories for tau-engine
Users that are interested in tau-engine are comparing it to the libraries listed below
Sorting:
- Wrapper for TSK (Sleuth Kit) Bindings☆12Jan 10, 2023Updated 3 years ago
- Parsers for common structures across windows formats.☆12Aug 23, 2023Updated 2 years ago
- Safe Rust API to libesedb☆12Sep 10, 2025Updated 6 months ago
- Manage Your Large Team of Consultants☆11Sep 18, 2025Updated 6 months ago
- Python bindings for https://github.com/omerbenamram/evtx/☆55Jan 3, 2026Updated 2 months ago
- lnk_parser is a full rust implementation to parse windows LNK files☆23Feb 17, 2026Updated last month
- Rust crate for accessing keys, values, and data stored in Windows hive (registry) files.☆53Jan 21, 2025Updated last year
- USN to JSON☆22Apr 4, 2020Updated 5 years ago
- Some stuff for PHD2021☆14May 21, 2025Updated 10 months ago
- Remotely collect linux live forensics artifacts.☆14Jul 8, 2022Updated 3 years ago
- Hundred Days of Yara Challenge☆12Jun 21, 2022Updated 3 years ago
- ARDvark parses the Apple Remote Desktop (ARD) files to pull out application usage, user activity, and filesystem listings.☆36Jun 1, 2023Updated 2 years ago
- clean interface for the windows event log☆26Updated this week
- siquery, a Rust osquery implementation to query system information☆59Oct 29, 2025Updated 4 months ago
- A Fast (and safe) parser for the Windows XML Event Log (EVTX) format☆892Feb 23, 2026Updated 3 weeks ago
- Queries for parsed spotlight database in sqlite☆13Dec 29, 2020Updated 5 years ago
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- Malice Office/OLE/RTF Plugin☆13Aug 29, 2018Updated 7 years ago
- Tools for macOS Forensic Bootable media☆16May 20, 2020Updated 5 years ago
- NTFS file system specimens☆13Jul 3, 2023Updated 2 years ago
- Understanding the operation and limitations of Sysmon's events☆23Sep 15, 2022Updated 3 years ago
- A DFVFS Backed Forensic Viewer☆42Apr 13, 2020Updated 5 years ago
- IntelMQ Tutorial and Introductory Documentation☆15May 26, 2022Updated 3 years ago
- A pointer scanner for Windows written in Rust☆19Dec 18, 2025Updated 3 months ago
- Publicly shareable windows event log message data☆28Nov 29, 2019Updated 6 years ago
- LNK to JSON☆14Mar 7, 2019Updated 7 years ago
- extract and parse WEVT_TEMPLATEs from PE files☆18Dec 30, 2023Updated 2 years ago
- ☆13Feb 25, 2021Updated 5 years ago
- Set up a quick and dirty audit log on an SQLite db.☆16May 16, 2013Updated 12 years ago
- OSSEM Detection Model☆184Oct 11, 2022Updated 3 years ago
- Generic Signature Format for SIEM Systems☆14Oct 27, 2021Updated 4 years ago
- r0ak ("roak") is the Ring 0 Army Knife -- A Command Line Utility To Read/Write/Execute Ring Zero on for Windows 10 Systems☆28Aug 6, 2018Updated 7 years ago
- Python bindings for LZFSE☆18Jul 9, 2020Updated 5 years ago
- Threat hunting with Sysmon and ArangoDB Graphs☆12Apr 16, 2020Updated 5 years ago
- Rust bindings for VirusTotal/Yara☆81Nov 19, 2025Updated 4 months ago
- Jupyter Notebooks for Cyber Threat Intelligence☆35Sep 14, 2023Updated 2 years ago
- High-level Threat Intelligence playbooks☆20Mar 6, 2021Updated 5 years ago
- Get the process name or process id on windows☆20Jun 1, 2025Updated 9 months ago
- ☆20Jan 20, 2023Updated 3 years ago