Python code illustrating different operating system terminologies, techniques, and solutions
☆70Nov 20, 2022Updated 3 years ago
Alternatives and similar repositories for OS
Users that are interested in OS are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- geolocate ip addresses in IIS logs☆21May 10, 2026Updated 4 months ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆29Aug 6, 2022Updated 4 years ago
- An open-source computer forensics tool that can display summary as the result of Windows Event Log analysis based on the chosen function(…☆11Feb 2, 2023Updated 3 years ago
- Everything related to Linux Forensics☆729Jul 13, 2023Updated 3 years ago
- Hundred Days of Yara Challenge☆12Jun 21, 2022Updated 4 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Malware Samples that could be used for teaching students about malware analysis.☆64Apr 8, 2024Updated 2 years ago
- Queries for parsed spotlight database in sqlite☆13Dec 29, 2020Updated 5 years ago
- Extension blocks as found in ShellBags and other places in the Registry☆26Apr 26, 2026Updated 5 months ago
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- Tools for macOS Forensic Bootable media☆16May 20, 2020Updated 6 years ago
- Parsers for common structures across windows formats.☆12Aug 23, 2023Updated 3 years ago
- NTFS file system specimens☆13May 21, 2026Updated 4 months ago
- Repository for different Windows DFIR related CMDs, PowerShell CMDlets, etc, plus workshops that I did for different conferences or event…☆76Jul 13, 2021Updated 5 years ago
- Forensic cheatsheets for use with cheat☆16Dec 2, 2021Updated 4 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Just Another broken Registry Parser (JARP)☆16May 23, 2024Updated 2 years ago
- Python for Defenders Course Resources☆21Mar 12, 2026Updated 6 months ago
- extract and parse WEVT_TEMPLATEs from PE files☆18Dec 30, 2023Updated 2 years ago
- isodump - ISO dump utility☆41Jun 9, 2019Updated 7 years ago
- PowerShell scripts to aid investigators when utilizing O365 and Magnet Axiom.☆13Aug 26, 2024Updated 2 years ago
- Repository of Yara Rules☆149Sep 23, 2026Updated 2 weeks ago
- irCRpull is a PowerShell script utilized to pull several system artifacts, utilizing the free tool CrowdResponse, from a live Win7+ syste…☆14Mar 25, 2015Updated 11 years ago
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.☆22Sep 30, 2022Updated 4 years ago
- Stand-alone parser for User Access Logging from Server 2012 and newer systems☆79Jan 9, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Set up a quick and dirty audit log on an SQLite db.☆16May 16, 2013Updated 13 years ago
- Crowdstrike Falcon Host script for iterating through instances to get alert and other relevant data☆14Jul 16, 2019Updated 7 years ago
- This is a repository for reporting any issues in any of my software☆14May 15, 2018Updated 8 years ago
- Regexplore is a Volatility plugin designed to mimic the functionality of the Registry Explorer plugins in EZsuite☆18Mar 31, 2023Updated 3 years ago
- A small tool to unmap PE memory dumps.☆11Nov 9, 2023Updated 2 years ago
- All in one - Malware + Analysis by Cylance☆11Nov 23, 2018Updated 7 years ago
- Python bindings for LZFSE☆18Jul 9, 2020Updated 6 years ago
- MacroExploit use in excel sheet☆21Jun 12, 2023Updated 3 years ago
- 010 template for apfs☆27Feb 26, 2021Updated 5 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- ☆19Jan 14, 2026Updated 8 months ago
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆70Sep 13, 2023Updated 3 years ago
- Modified version of i.j Shell Property Sheets Export/Import 32☆11Nov 17, 2020Updated 5 years ago
- allowing um r/w through km from um ioctl ™☆11Jan 2, 2022Updated 4 years ago
- Digital Artefact Extraction Tool for Discord Application☆11Apr 13, 2023Updated 3 years ago
- ☆27Mar 2, 2022Updated 4 years ago
- Development guide for Volatility Plugins☆22Sep 6, 2017Updated 9 years ago