arxsys / dff
DFF (Digital Forensics Framework) is a Forensics Framework coming with command line and graphical interfaces. DFF can be used to investigate hard drives and volatile memory and create reports about user and system activities.
☆268Updated 4 years ago
Related projects: ⓘ
- Remote forensics meta tool☆459Updated 3 months ago
- ☆375Updated this week
- Web App for Volatility framework☆378Updated 2 weeks ago
- SIFT☆484Updated 7 months ago
- The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted driv…☆332Updated 2 years ago
- Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux☆489Updated last year
- FAME Automates Malware Evaluation☆845Updated 2 weeks ago
- A repository of tools and scripts related to malware analysis☆242Updated 8 years ago
- Script for automating Linux memory capture and analysis☆263Updated 4 years ago
- Differential Analysis of Malware in Memory☆209Updated 7 years ago
- 16,432 Free Yara rules created by☆378Updated 5 years ago
- An AFF4 C++ implementation.☆187Updated last year
- Web interface for the Volatility Memory Forensics Framework☆259Updated 6 years ago
- ☆271Updated last year
- Yara Rule Analyzer and Statistics☆356Updated last year
- CLI tool to manage a SIFT Install☆417Updated last year
- Modular file scanning/analysis framework☆616Updated 4 years ago
- EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.☆180Updated 4 years ago
- Autopsy Python Plugins☆333Updated 6 months ago
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆263Updated 3 years ago
- ☆505Updated 3 years ago
- Easy-to-use live forensics toolbox for Linux endpoints☆407Updated 6 months ago
- Digital forensic acquisition tool for Windows based incident response.☆328Updated 4 months ago
- A framework for orchestrating forensic collection, processing and data export☆290Updated this week
- Windows Live Artifacts Acquisition Script☆181Updated 2 years ago
- Limon is a sandbox developed as a research project written in python, which automatically collects, analyzes, and reports on the run time…☆387Updated 8 years ago
- CyLR - Live Response Collection Tool☆622Updated 2 years ago
- ☆195Updated 2 years ago
- Yara integrated software to handle archive file data.☆296Updated 2 years ago
- This repository contains Dockerfiles for building Docker images of popular malware analysis tools, which are distributed through the REMn…☆257Updated 11 months ago