Python code illustrating different operating system terminologies, techniques, and solutions
☆70Nov 20, 2022Updated 3 years ago
Alternatives and similar repositories for OS
Users that are interested in OS are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- geolocate ip addresses in IIS logs☆21May 10, 2026Updated 3 months ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆29Aug 6, 2022Updated 4 years ago
- An open-source computer forensics tool that can display summary as the result of Windows Event Log analysis based on the chosen function(…☆11Feb 2, 2023Updated 3 years ago
- Everything related to Linux Forensics☆728Jul 13, 2023Updated 3 years ago
- Hundred Days of Yara Challenge☆12Jun 21, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Malware Samples that could be used for teaching students about malware analysis.☆64Apr 8, 2024Updated 2 years ago
- Queries for parsed spotlight database in sqlite☆13Dec 29, 2020Updated 5 years ago
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- Tools for macOS Forensic Bootable media☆16May 20, 2020Updated 6 years ago
- Parsers for common structures across windows formats.☆12Aug 23, 2023Updated 3 years ago
- Repository for different Windows DFIR related CMDs, PowerShell CMDlets, etc, plus workshops that I did for different conferences or event…☆76Jul 13, 2021Updated 5 years ago
- Forensic cheatsheets for use with cheat☆15Dec 2, 2021Updated 4 years ago
- Just Another broken Registry Parser (JARP)☆16May 23, 2024Updated 2 years ago
- Python for Defenders Course Resources☆22Mar 12, 2026Updated 5 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- extract and parse WEVT_TEMPLATEs from PE files☆18Dec 30, 2023Updated 2 years ago
- isodump - ISO dump utility☆41Jun 9, 2019Updated 7 years ago
- PowerShell scripts to aid investigators when utilizing O365 and Magnet Axiom.☆13Aug 26, 2024Updated 2 years ago
- Repository of Yara Rules☆151Aug 18, 2026Updated 2 weeks ago
- irCRpull is a PowerShell script utilized to pull several system artifacts, utilizing the free tool CrowdResponse, from a live Win7+ syste…☆14Mar 25, 2015Updated 11 years ago
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.☆22Sep 30, 2022Updated 3 years ago
- Extracts information from APK files.☆14May 6, 2024Updated 2 years ago
- Set up a quick and dirty audit log on an SQLite db.☆16May 16, 2013Updated 13 years ago
- Stand-alone parser for User Access Logging from Server 2012 and newer systems☆79Jan 9, 2024Updated 2 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Crowdstrike Falcon Host script for iterating through instances to get alert and other relevant data☆14Jul 16, 2019Updated 7 years ago
- This is a repository for reporting any issues in any of my software☆14May 15, 2018Updated 8 years ago
- Regexplore is a Volatility plugin designed to mimic the functionality of the Registry Explorer plugins in EZsuite☆18Mar 31, 2023Updated 3 years ago
- A small tool to unmap PE memory dumps.☆11Nov 9, 2023Updated 2 years ago
- All in one - Malware + Analysis by Cylance☆11Nov 23, 2018Updated 7 years ago
- Bachelor Thesis for XAMK - Machine Learning Methods for Malware Detection and Classification☆13Jan 29, 2020Updated 6 years ago
- Python bindings for LZFSE☆18Jul 9, 2020Updated 6 years ago
- MacroExploit use in excel sheet☆21Jun 12, 2023Updated 3 years ago
- ☆19Jan 14, 2026Updated 7 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- High-level Threat Intelligence playbooks☆21Mar 6, 2021Updated 5 years ago
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆69Sep 13, 2023Updated 2 years ago
- allowing um r/w through km from um ioctl ™☆11Jan 2, 2022Updated 4 years ago
- Digital Artefact Extraction Tool for Discord Application☆11Apr 13, 2023Updated 3 years ago
- ☆27Mar 2, 2022Updated 4 years ago
- Development guide for Volatility Plugins☆22Sep 6, 2017Updated 9 years ago
- 'apk-yara-checker' is a little CLI tool written in Rust to check Yara rules against a folder of APK files.☆16Jul 6, 2024Updated 2 years ago