cclgroupltd / ccl-asl
Python Module for parsing Apple ASL Logs
☆15Updated 9 years ago
Alternatives and similar repositories for ccl-asl
Users that are interested in ccl-asl are comparing it to the libraries listed below
Sorting:
- macOS XProtect definition files☆40Updated 3 years ago
- Resources for HFS+ Forensics☆36Updated 9 years ago
- This is a malware analyzer for Mac OS X that extends the Cuckoo Sandbox project (https://cuckoosandbox.org/)☆22Updated 8 years ago
- Python script to parse the Most Recently Used (MRU) plist files on macOS into a more human friendly format.☆104Updated 7 years ago
- Volatility plugin to extract FileVault 2 VMK's☆50Updated 3 years ago
- New and Improved☆17Updated 9 years ago
- Tools for macOS Forensic Bootable media☆15Updated 4 years ago
- a collection of yara rules for binary analysis☆24Updated 7 years ago
- A small utility to read and write to Macs physical memory using default AppleHWAccess.kext.☆25Updated 9 years ago
- A minimal malware analysis sandbox for macOS☆29Updated 2 years ago
- Golang command line tool for the macOS Endpoint Security Framework☆29Updated 5 years ago
- Binaries for the log2timeline projects and dependencies☆39Updated 8 months ago
- ARDvark parses the Apple Remote Desktop (ARD) files to pull out application usage, user activity, and filesystem listings.☆35Updated last year
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆33Updated last year
- The current repository contains all the scripts needed to build kernel-mode mac-a-mal malicious activity hooking on macOS.☆85Updated 6 years ago
- Automatically exported from code.google.com/p/mac-osx-forensics☆28Updated 9 years ago
- A Swift port of some of the original PersistentJXA projects by D00MFist. Original PersistentJXA repo: https://github.com/D00MFist/Persist…☆32Updated 4 years ago
- iOS Backup Examiner - A forensics tool for parsing an iOS backup's Info.plist file☆22Updated 8 years ago
- OSX Events Monitor☆22Updated 6 years ago
- python-deepviz is a python wrapper for deepviz.com REST APIs☆11Updated 8 years ago
- Use "Full Disk Access" permissions to read the contents of TCC.db and display it in human-readable format☆39Updated 3 years ago
- Enabling 2fac confirmation for newly connected USB devices☆45Updated 8 years ago
- XProtect configuration files stats☆20Updated 7 years ago
- Parse IE, FireFox, Chrome and Safari Cookies for Google Analytic values☆23Updated 8 years ago
- MalRecon - Basic Malware Reconnaissance and Analysis Tool☆26Updated 7 years ago
- Recover event log entries from an image by heurisitically looking for record structures.☆27Updated 9 years ago
- The grey fox☆25Updated 8 years ago
- incident response tool for iOS devices☆49Updated 3 years ago
- Integrity validator for iOS devices☆102Updated 6 years ago
- Parse the Mac Quickook index.sqlite database☆53Updated 8 years ago