dfxml-working-group / dfxml_python
Digital Forensics XML packages in Python
☆15Updated 2 weeks ago
Alternatives and similar repositories for dfxml_python:
Users that are interested in dfxml_python are comparing it to the libraries listed below
- Converting data from services like Censys and Shodan to a common data model☆49Updated 5 months ago
- A DFVFS Backed Forensic Viewer☆40Updated 4 years ago
- ☆20Updated last year
- Script that checks for available updates for the most commonly used Digital Forensics tools☆58Updated 4 years ago
- It is based on bulk_extractor (https://github.com/simsong/bulk_extractor) and add scanners for record carving☆40Updated 4 years ago
- macOS Artifact Intelligence Tool☆13Updated 5 years ago
- A sample VHDX file with multiple verbose examples of forensic and anti-forensics artifacts. Meant to be basic and can be expanded upon. P…☆25Updated 2 years ago
- WLEAPP is an open source project that aims to parse Windows OS artifacts for the purpose of triage analysis.☆31Updated last year
- Information about the open-source-dfir slack community☆28Updated last year
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆36Updated last year
- Logbook for Digital Forensics and Incident Response☆50Updated 7 months ago
- Practical Information Sharing between Law Enforcement and CSIRT communities using MISP☆31Updated last year
- A MITRE ATT&CK Lookup Tool☆45Updated 10 months ago
- Hashes of infamous malware☆25Updated last year
- unix_collector is a Live Response collection script for Incident Response on UNIX-like systems using native binaries. Supports AIX, Andro…☆32Updated 2 months ago
- Scripts to integrate DFIR-IRIS, MISP and TimeSketch☆33Updated 3 years ago
- Yara rules☆20Updated last year
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆32Updated last month
- CryptnetURLCacheParser is a tool to parse CryptAPI cache files☆16Updated 7 months ago
- The Python implementation of the AFF4 standard.☆45Updated 10 months ago
- CLI interface to get Ransomware attacks data from ransomwhat.telemetry.ltd☆12Updated 2 years ago
- Digital Forensics Artifacts Knowledge Base☆77Updated 9 months ago
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆22Updated last year
- A script to assist in processing forensic RAM captures for malware triage☆27Updated 4 years ago
- Penguin OS Forensic (or Flight) Recorder☆39Updated 2 months ago
- Just Another broken Registry Parser (JARP)☆16Updated 9 months ago
- Python based CLI for MalwareBazaar☆36Updated 4 months ago
- Attempt to replicate the functions of auto_rip by Corey Harrell in Python.☆13Updated 6 months ago
- A tool to use novel locations to extract metadata from Office documents.☆62Updated last year
- TAPIR is a multi-user, client/server, incident response framework☆44Updated 2 years ago