ainfosec / MacResponse-Forensics
☆33Updated 12 years ago
Alternatives and similar repositories for MacResponse-Forensics:
Users that are interested in MacResponse-Forensics are comparing it to the libraries listed below
- Automatically exported from code.google.com/p/pac4mac☆40Updated 6 years ago
- OSX Security Compliance & Hardening☆49Updated 9 years ago
- OSX Events Monitor☆22Updated 6 years ago
- macOS XProtect definition files☆40Updated 2 years ago
- A small utility to read and write to Macs physical memory using default AppleHWAccess.kext.☆25Updated 9 years ago
- A collection of Volatility Framework plugins.☆26Updated 11 years ago
- a collection of yara rules for binary analysis☆24Updated 7 years ago
- Materials from presentation☆20Updated 9 years ago
- Yara syntax highlighting☆25Updated 3 years ago
- Integrity checking script for Apple Thunderbolt to Ethernet adapters, to check for attacks similar to Thunderstrike 2☆26Updated 9 years ago
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆33Updated last year
- A Volatility plugin for finding sqlite database rows☆22Updated 5 years ago
- Plugins for the Viper Framework☆14Updated 5 years ago
- Volatility plugin to extract FileVault 2 VMK's☆50Updated 3 years ago
- A USB armory based USB sandbox☆20Updated 7 years ago
- This is a malware analyzer for Mac OS X that extends the Cuckoo Sandbox project (https://cuckoosandbox.org/)☆21Updated 8 years ago
- A library for performing memory forensics over the IEEE 1394 interface.☆18Updated 6 years ago
- IDA Pomidor is a plugin for Hex-Ray's IDA Pro disassembler that will help you retain concentration and productivity during long reversing…☆35Updated 10 years ago
- Recover event log entries from an image by heurisitically looking for record structures.☆27Updated 9 years ago
- Discover potential timestamps within the Windows Registry☆18Updated 10 years ago
- Convert Windows Netmon Monitor Mode Wireless Packet Captures to Libpcap Format☆15Updated 5 years ago
- Automated memory forensics analysis☆33Updated 5 years ago
- New and Improved☆17Updated 8 years ago
- The grey fox☆25Updated 8 years ago
- Why hunt when you can seine?☆21Updated 9 years ago
- repository with additional materials and source code☆30Updated 8 years ago
- Recon-ng modules that won't get accepted into the main distribution because of 3rd party dependencies.☆18Updated 11 years ago
- Server for receiving autorun data from the clients☆13Updated 7 years ago
- POC for IAT Parsing Payloads☆47Updated 8 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago