Wrapper for TSK (Sleuth Kit) Bindings
☆12Jan 10, 2023Updated 3 years ago
Alternatives and similar repositories for libtsk-rs
Users that are interested in libtsk-rs are comparing it to the libraries listed below
Sorting:
- Manage Your Large Team of Consultants☆11Sep 18, 2025Updated 5 months ago
- Safe Rust API to libesedb☆12Sep 10, 2025Updated 5 months ago
- Parsers for common structures across windows formats.☆12Aug 23, 2023Updated 2 years ago
- USN to JSON☆22Apr 4, 2020Updated 5 years ago
- LNK to JSON☆14Mar 7, 2019Updated 6 years ago
- Windows file metadata / forensic tool.☆18Oct 12, 2025Updated 4 months ago
- Python bindings for https://github.com/omerbenamram/evtx/☆55Jan 3, 2026Updated last month
- Primarily aimed at replicating files that cannot be directly copied due to being in use.☆11Apr 22, 2024Updated last year
- A Windows registry file parser written in Rust☆41Oct 30, 2025Updated 4 months ago
- lnk_parser is a full rust implementation to parse windows LNK files☆23Feb 17, 2026Updated last week
- Rust crate for accessing keys, values, and data stored in Windows hive (registry) files.☆50Jan 21, 2025Updated last year
- Help deobfuscate VBScript☆18Jul 1, 2022Updated 3 years ago
- Repo with supporting material for the talk titled "Cracking the Beacon: Automating the extraction of implant configurations"☆11Feb 6, 2025Updated last year
- NTFS Security Descriptor Stream ($Secure:$SDS) parser☆14Jan 9, 2023Updated 3 years ago
- my MSTICpy practice and custom tools repository☆11Apr 23, 2025Updated 10 months ago
- A library for fast parse & import of Windows Master File Table($MFT) into Elasticsearch.☆12Jun 23, 2025Updated 8 months ago
- Scanner for certain IoCs☆11Jan 29, 2025Updated last year
- Automatically exported from code.google.com/p/mac-osx-forensics☆28Jan 12, 2016Updated 10 years ago
- Indicators of Normality☆11Jul 22, 2022Updated 3 years ago
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- Backstage Parser☆33Jun 23, 2022Updated 3 years ago
- File Capability Extractor☆14Jul 12, 2025Updated 7 months ago
- An efficient tool for extracting files, directories, and alternate data streams directly from NTFS image files.☆22Updated this week
- A document tagging library☆33Mar 27, 2025Updated 11 months ago
- http://moaistory.blogspot.com/2016/08/ie10analyzer.html☆19Jul 20, 2024Updated last year
- extract and parse WEVT_TEMPLATEs from PE files☆18Dec 30, 2023Updated 2 years ago
- Remotely collect linux live forensics artifacts.☆14Jul 8, 2022Updated 3 years ago
- Python3 script which decrypts files encrypted by flawed Cl0p ELF variant.☆17Feb 6, 2023Updated 3 years ago
- Python bindings for https://github.com/omerbenamram/mft☆23Dec 23, 2025Updated 2 months ago
- Rhaegal is a tool written in Python 3 used to scan Windows Event Logs for suspicious logs. Rhaegal uses custom rule format to detect sus…☆42Sep 21, 2023Updated 2 years ago
- Pure Rust fuzzy hash implementation☆22Mar 13, 2023Updated 2 years ago
- Parse Manifest.mbdb files from iTunes backup directories☆20Jun 29, 2017Updated 8 years ago
- CLI tool to compute the TypeRefHash for .NET binaries.☆19Nov 10, 2021Updated 4 years ago
- Recover event log entries from an image by heurisitically looking for record structures.☆26Oct 9, 2015Updated 10 years ago
- Library to handle the files in zff format (file format to store and handle forensic acquisitions).☆21Feb 9, 2026Updated 2 weeks ago
- Tool for analysis of Windows Prefetch files☆26Nov 11, 2018Updated 7 years ago
- Synopsis is a tool to aid analysts reviewing browser history files by providing a high-level “synopsis” of key information.☆22Oct 31, 2018Updated 7 years ago
- ☆24Aug 30, 2019Updated 6 years ago
- Capture-Py is a malware analysis tool that makes a copy of any files deleted or modified in a given directory and sub-directories. It was…☆27Jun 28, 2017Updated 8 years ago