cheeky4n6monkey / iOS_sysdiagnose_forensic_scripts
Scripts to parse various iOS sysdiagnose logs. Based upon the forensic research of Mattia Epifani, Heather Mahalik and Cheeky4n6monkey.
☆186Updated 2 years ago
Alternatives and similar repositories for iOS_sysdiagnose_forensic_scripts:
Users that are interested in iOS_sysdiagnose_forensic_scripts are comparing it to the libraries listed below
- A parser for Unified logging tracev3 files☆85Updated last year
- ☆65Updated last month
- Forensic toolkit for iOS sysdiagnose feature☆188Updated 2 weeks ago
- Bash script to extract data from a "chekcra1ned" iOS device☆144Updated 4 years ago
- Collection of SQL query templates for digital forensics use by platform and application.☆102Updated 3 years ago
- Apple Pattern of Life Lazy Output'er☆581Updated last year
- Presentation Archives for my macOS and iOS Related Research☆248Updated 2 weeks ago
- Forensic Artifact Collection Tool for macOS☆110Updated 6 months ago
- ☆237Updated this week
- Collection of forensics artifacts location for Mac OS X and iOS☆328Updated 3 years ago
- Quick iOS Backup UnFunkerizor☆21Updated 3 years ago
- Parser for OSX/iOS FSEvents Logs☆246Updated 3 months ago
- macOS/iOS database location scraper to extract location data☆80Updated 2 years ago
- ☆19Updated 5 years ago
- A utility to process the iOS Cache.sqlite database and create a timelined KML map for use in Google Earth☆26Updated 4 months ago
- iOS Logs, Events, And Plist Parser☆845Updated this week
- Python 3 Script to parse out iTunes backups☆180Updated last year
- Vehicle Logs Events And Properties Parser☆83Updated 2 months ago
- This toolkit aims to help forensicators perform different kinds of acquisitions on iOS devices☆142Updated 4 years ago
- Returns Logs Events And Properties Parser☆104Updated last week
- iOS Photos.sqlite queries that may help with decoding data stored in Photos.sqlite. These queries are based on testing, research and some…☆65Updated last year
- Scripts to extract compound bplists in the iOS -> KnowledgeC.db -> structuredmetadata table.☆24Updated 5 years ago
- A curated list of iOS Forensics References, organized by folder with specific references (links to blog post, research paper, articles, a…☆214Updated last year
- Decrypt signal.sqlite IOS☆51Updated 5 years ago
- Read and extract data from macOS spotlight databases☆108Updated last year
- macOS (& ios) Artifact Parsing Tool☆825Updated 2 weeks ago
- Dump the iOS Frequent Location binary plist files☆83Updated 6 years ago
- Module(s) related to reading SEGB (fka "Biome") data from iOS, mascOS, etc.☆19Updated 10 months ago
- Mapping XProtect's obfuscated malware family names to common industry names.☆84Updated 11 months ago
- Script to recover deleted entries in an SQLite database☆187Updated 8 years ago