dfxml-working-group / dfxml_pythonLinks
Digital Forensics XML packages in Python
☆17Updated 7 months ago
Alternatives and similar repositories for dfxml_python
Users that are interested in dfxml_python are comparing it to the libraries listed below
Sorting:
- Automate the regular transfer of AIS data into a MISP Server☆10Updated last year
- A MITRE ATT&CK Lookup Tool☆45Updated last year
- TAPIR is a multi-user, client/server, incident response framework☆47Updated 3 years ago
- Practical Information Sharing between Law Enforcement and CSIRT communities using MISP☆35Updated 2 years ago
- A DFVFS Backed Forensic Viewer☆41Updated 5 years ago
- Penguin OS Forensic (or Flight) Recorder☆42Updated 10 months ago
- MISP sighting server is a fast sighting server to store and look-up sightings on attributes (network indicators, file hashes, system indi…☆15Updated last year
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆32Updated last month
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 4 years ago
- A quick reference guide for python script development in DFIR☆18Updated last year
- Python library to query various sources of threat intelligence for data on domains, file hashes, and IP addresses.☆31Updated 2 years ago
- Fast lookup server for NSRL and other hash database used in digital forensic☆46Updated 3 years ago
- ☆23Updated 8 months ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 3 years ago
- AIL project training materials☆37Updated 4 months ago
- Generate portable TTP intelligence from a web-based report☆31Updated 3 years ago
- CISA Known Exploited Vulnerabilities Catalog Enrichment☆18Updated last year
- Python based CLI for MalwareBazaar☆39Updated 4 months ago
- A web scraper to create MISP events and reports☆17Updated 4 months ago
- Converting data from services like Censys and Shodan to a common data model☆51Updated 4 months ago
- Can you pay the ransom in your country?☆14Updated last year
- Anteater is Reconnaissance tool for discovering interesting files and folders in a web application that most likely has been misconfigure…☆12Updated last year
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆125Updated 2 years ago
- Cont3xt intends to centralize and simplify a structured approach to gathering contextual intelligence in support of technical investigati…☆38Updated last year
- Tools used by CSIRT and especially in the scope of CNW☆17Updated 4 months ago
- ☆27Updated 3 months ago
- An npm package for extracting common IoC (Indicator of Compromise) from a block of text☆58Updated last month
- Harvest Linux forensic data for operational triage of an event.☆51Updated last year
- NTFS file system specimens☆13Updated 2 years ago
- A package to create HTML MISP reports, including volume of trending events and attributes, evens received from key organisations and targ…☆11Updated 3 months ago