aff4 / pyaff4
The Python implementation of the AFF4 standard.
☆44Updated 4 months ago
Related projects: ⓘ
- AFF4 Standard Documents☆25Updated 2 years ago
- A fork of The Sleuthkit with Pooled Storage and APFS support. See https://www.youtube.com/watch?v=k1XPillJ7aw for more info and usage.☆26Updated 4 years ago
- Yet another registry parser☆128Updated 2 years ago
- Command line utility and Python package to ease the (un)mounting of forensic disk images☆116Updated last year
- Extract common Windows artifacts from source images and VSCs☆65Updated 3 years ago
- Different DFIR and CTI utilities☆35Updated 4 years ago
- Digital Forensics Windows Registry (dfWinReg)☆49Updated 4 months ago
- Python bindings for The Sleuth Kit (libtsk)☆90Updated 5 months ago
- A rewrite of mactime, a bodyfile reader☆33Updated last month
- A timestamp and date decoder written for python 3☆33Updated last month
- Checks with NSRL RDS servers looking for for hash matches☆111Updated 3 years ago
- A DFVFS Backed Forensic Viewer☆38Updated 4 years ago
- macOS triage is a python script to collect various macOS logs, artifacts, and other data.☆25Updated 3 years ago
- Specifications used in the MISP project including MISP core format☆45Updated 2 months ago
- Example programs used in the automating DFIR series☆64Updated 5 years ago
- Python library for parsing AccessData AD1 images☆29Updated last year
- A Windows Event Processing Utility☆46Updated 6 years ago
- A better strings utility!☆119Updated last year
- Extract compressed memory pages from page-aligned data☆41Updated 5 years ago
- It is based on bulk_extractor (https://github.com/simsong/bulk_extractor) and add scanners for record carving☆36Updated 4 years ago
- Community modules for FAME☆63Updated 2 weeks ago
- References for FIRST CTI 2019 Symposium presentation☆23Updated 5 years ago
- InvestigationPlaybookSpec☆72Updated 6 years ago
- Python IOC Editor☆61Updated 9 years ago
- An NTFS journal parser☆82Updated 8 years ago
- Simple yara rule manager☆64Updated last year
- Personal settings for X-Ways Forensics☆32Updated 2 years ago
- Definition, description and relationship types of MISP objects☆91Updated last week
- Papers and Presentations from the DFRWS Conferences☆19Updated 2 years ago
- Script that checks for available updates for the most commonly used Digital Forensics tools☆57Updated 3 years ago