Automatically exported from code.google.com/p/mac-osx-forensics
☆28Jan 12, 2016Updated 10 years ago
Alternatives and similar repositories for mac-osx-forensics
Users that are interested in mac-osx-forensics are comparing it to the libraries listed below
Sorting:
- Wrapper for TSK (Sleuth Kit) Bindings☆12Jan 10, 2023Updated 3 years ago
- Parse Manifest.mbdb files from iTunes backup directories☆20Jun 29, 2017Updated 8 years ago
- Some useful tools for a iOS Forensics.☆37Jan 6, 2019Updated 7 years ago
- Synopsis is a tool to aid analysts reviewing browser history files by providing a high-level “synopsis” of key information.☆23Oct 31, 2018Updated 7 years ago
- An updated C# port of X-Ways X-Tensions API.☆11Mar 12, 2018Updated 7 years ago
- Parsers for common structures across windows formats.☆12Aug 23, 2023Updated 2 years ago
- Volatility 3 plugins to extract a module as complete as possible☆12Jun 13, 2023Updated 2 years ago
- Repo with supporting material for the talk titled "Cracking the Beacon: Automating the extraction of implant configurations"☆11Feb 6, 2025Updated last year
- InternetOff turns access to the Internet off and on again, without affecting access to the local network. It is a small program that work…☆13Jan 1, 2020Updated 6 years ago
- iOS forensics utility☆12May 8, 2018Updated 7 years ago
- Help deobfuscate VBScript☆18Jul 1, 2022Updated 3 years ago
- NTFS Security Descriptor Stream ($Secure:$SDS) parser☆14Jan 9, 2023Updated 3 years ago
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- SysScout is a fully encapsulated script that quickly and easily pulls local machine information from Linux-Based systems. A simple, easy…☆13Oct 20, 2017Updated 8 years ago
- 010 template for apfs☆26Feb 26, 2021Updated 5 years ago
- Python bindings for https://github.com/omerbenamram/evtx/☆55Jan 3, 2026Updated 2 months ago
- Backstage Parser☆33Jun 23, 2022Updated 3 years ago
- ObjC synchronization construct with the ability to wait until signalled that a condition was met.☆79Jan 10, 2014Updated 12 years ago
- LNK to JSON☆14Mar 7, 2019Updated 7 years ago
- Python library for parsing AccessData AD1 images☆33Jun 1, 2023Updated 2 years ago
- Simple and efficient file shredding☆14Sep 23, 2019Updated 6 years ago
- http://moaistory.blogspot.com/2016/08/ie10analyzer.html☆19Jul 20, 2024Updated last year
- extract and parse WEVT_TEMPLATEs from PE files☆18Dec 30, 2023Updated 2 years ago
- Remotely collect linux live forensics artifacts.☆14Jul 8, 2022Updated 3 years ago
- Forensic Artifact Collection Tool for macOS☆118Jul 28, 2025Updated 7 months ago
- Python script for parsing ESET (NOD32) virlog.dat file.☆14Sep 28, 2017Updated 8 years ago
- A DFVFS Backed Forensic Viewer☆42Apr 13, 2020Updated 5 years ago
- interesting analysis☆16May 14, 2018Updated 7 years ago
- Scripts and Modules for forensical analyses of mysql database systems☆22Sep 19, 2014Updated 11 years ago
- Different DFIR and CTI utilities☆39May 13, 2020Updated 5 years ago
- Python bindings for https://github.com/omerbenamram/mft☆23Dec 23, 2025Updated 2 months ago
- CVE-2025-31324, SAP Exploit☆25Apr 28, 2025Updated 10 months ago
- APFS filesystem format for Kaitai Struct☆81Apr 20, 2022Updated 3 years ago
- A Windows registry file parser written in Rust☆41Oct 30, 2025Updated 4 months ago
- A parsing tool for backgrounditems.btm☆52Aug 23, 2024Updated last year
- Some IR notes☆73Jul 23, 2016Updated 9 years ago
- Rhaegal is a tool written in Python 3 used to scan Windows Event Logs for suspicious logs. Rhaegal uses custom rule format to detect sus…☆42Sep 21, 2023Updated 2 years ago
- Yara syntax highlighting☆25Sep 4, 2021Updated 4 years ago
- Library to handle the files in zff format (file format to store and handle forensic acquisitions).☆21Feb 9, 2026Updated 3 weeks ago