Cast is an installer for any compatible Saltstack based distribution like SIFT or REMnux
☆140Sep 25, 2026Updated this week
Alternatives and similar repositories for cast
Users that are interested in cast are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- CLI tool to manage a SIFT Install☆412Mar 25, 2023Updated 3 years ago
- SIFT☆551Feb 14, 2024Updated 2 years ago
- Salt States for Configuring the SIFT Workstation☆110Sep 19, 2026Updated last week
- Volatility plugins developed and maintained by the community☆22Sep 18, 2024Updated 2 years ago
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (ext4, XFS) journals (not systemd-journald logs), gene…☆112Apr 8, 2026Updated 5 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Windows Forensics Environment Builder☆190Aug 1, 2026Updated last month
- A repo to centralize some of the regular expressions I've found useful over the course of my DFIR career.☆109Mar 12, 2026Updated 6 months ago
- Personal settings for X-Ways Forensics☆35Apr 28, 2022Updated 4 years ago
- LILO based Pulse Secure appliance disk image decryptor☆13Mar 20, 2024Updated 2 years ago
- Malformed Access Log to CSV - Convert Web Server Access Logs to CSV☆18Sep 3, 2024Updated 2 years ago
- Multi-quarantine extractor☆59Mar 3, 2026Updated 6 months ago
- A script that updates KAPE (using Get-KAPEUpdate.ps1) as well as EZ Tools (within .\KAPE\Modules\bin) and the ancillary files that enhanc…☆62Jun 24, 2025Updated last year
- An easy to use PowerShell script to collect memory and disk forensics for DFIR investigations.☆347Dec 3, 2025Updated 9 months ago
- A simple utility to generate real File and Active Directory activity in lab environments for the purposes of monitoring changes and detec…☆11Dec 4, 2018Updated 7 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Copy of the libewf source code that is configured for a 64-bit MS Visual Studio build.☆18Aug 17, 2020Updated 6 years ago
- The MAGIC tool is a wrapper around the Microsoft Graph Python SDK, designed to download incident response-relevant data from M365 environ…☆35Apr 13, 2026Updated 5 months ago
- PowerShell scripts to aid investigators when utilizing O365 and Magnet Axiom.☆13Aug 26, 2024Updated 2 years ago
- Configuration files for the SOF-ELK VM☆1,755Sep 15, 2026Updated last week
- Here are some tools I developed to help analyze malware☆11Nov 8, 2023Updated 2 years ago
- An advanced parser for INDX records☆30Aug 7, 2019Updated 7 years ago
- Volume Shadow Copy Explorer☆17Nov 23, 2025Updated 10 months ago
- Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts…☆1,159Updated this week
- A collection of Tools and Rules for decoding Brute Ratel C4 badgers☆67Jul 7, 2022Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- RRR (Rapid Response Reporting) is a collection of Incident Response Report objects. They are designed to help incident responders provid…☆37Apr 6, 2022Updated 4 years ago
- ☆23Mar 12, 2025Updated last year
- Practical Windows Forensics Training☆785Feb 16, 2026Updated 7 months ago
- Windows Forensic Environment (WinFE) - based on WinPE☆42Mar 16, 2023Updated 3 years ago
- Various PowerShells scripts I've made (or others have made) to automate some of the boring stuff in my everyday DFIR journey!☆53Jan 9, 2026Updated 8 months ago
- Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.☆223Updated this week
- Forensic cheatsheets for use with cheat☆16Dec 2, 2021Updated 4 years ago
- A timestamp and date decoder written for python 3☆42Mar 9, 2026Updated 6 months ago
- 🧭 The artifactcollector is a customizable agent to collect forensic artifacts on any Windows, macOS or Linux system☆309May 7, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.☆22Sep 30, 2022Updated 3 years ago
- This repository contains helper scripts and custom configs to get the best out of Google's Timesketch project.☆122Oct 8, 2023Updated 2 years ago
- ☆11Jun 12, 2023Updated 3 years ago
- ☆2,431Oct 14, 2023Updated 2 years ago
- Tools and script for my remnux/sift installation☆23Aug 22, 2026Updated last month
- Backstage Parser☆33Jun 23, 2022Updated 4 years ago
- Search Index Database Reporter☆145Oct 28, 2025Updated 10 months ago