ainfosec / MacResponse-Forensics
☆33Updated 12 years ago
Alternatives and similar repositories for MacResponse-Forensics:
Users that are interested in MacResponse-Forensics are comparing it to the libraries listed below
- Convert Windows Netmon Monitor Mode Wireless Packet Captures to Libpcap Format☆15Updated 5 years ago
- Volatility plugin to extract FileVault 2 VMK's☆50Updated 3 years ago
- OSX Events Monitor☆21Updated 6 years ago
- Automatically exported from code.google.com/p/pac4mac☆40Updated 5 years ago
- incident response tool for iOS devices☆49Updated 2 years ago
- Recover event log entries from an image by heurisitically looking for record structures.☆27Updated 9 years ago
- vstruct based dissectors for various file/protocol formats☆15Updated 7 years ago
- A small utility to read and write to Macs physical memory using default AppleHWAccess.kext.☆25Updated 9 years ago
- a collection of yara rules for binary analysis☆24Updated 7 years ago
- Resources for HFS+ Forensics☆35Updated 9 years ago
- This is a malware analyzer for Mac OS X that extends the Cuckoo Sandbox project (https://cuckoosandbox.org/)☆21Updated 8 years ago
- Python Module for parsing Apple ASL Logs☆14Updated 8 years ago
- Parses Java Cache IDX files☆39Updated 6 years ago
- ARDvark parses the Apple Remote Desktop (ARD) files to pull out application usage, user activity, and filesystem listings.☆34Updated last year
- ☆41Updated 7 years ago
- A collection of Volatility Framework plugins.☆26Updated 11 years ago
- A Volatility plugin for finding sqlite database rows☆22Updated 5 years ago
- r2yara - Module for Yara using radare2 information☆34Updated last year
- Plugins for the Viper Framework☆14Updated 5 years ago
- Tools for macOS Forensic Bootable media☆15Updated 4 years ago
- Rekall Forensics and Incident Response Framework with rVMI extensions☆33Updated 3 years ago
- An OSX exploitation helper library.☆34Updated 9 years ago
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆33Updated 10 months ago
- New and Improved☆16Updated 8 years ago
- Yara syntax highlighting☆25Updated 3 years ago
- A Rekall interactive document for a Memory Analysis workshop/course.☆43Updated 7 years ago
- BONOMEN - Hunt for Malware Critical Process Impersonation☆47Updated 4 years ago
- A library for performing memory forensics over the IEEE 1394 interface.☆18Updated 6 years ago