Rust DFIR tool that massively parses cross-platform evidence, even deleted logs, into a lateral movement timeline and graph database.
☆24May 21, 2026Updated 3 months ago
Alternatives and similar repositories for masstin
Users that are interested in masstin are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Shattering the 1:10 barrier. A high-velocity alternative to Plaso for the modern IR landscape☆16Jul 6, 2026Updated last month
- Neural network RDP cache reconstruction tool☆34May 21, 2026Updated 3 months ago
- Orchestration Software for Incident Response☆16Jul 30, 2026Updated 3 weeks ago
- Infrastructure as code for CrowdStrike — manage detections, saved searches, lookup files, and more with a Terraform-like lifecycle.☆21Aug 11, 2026Updated 2 weeks ago
- MFT and USN parser that allows direct extraction in filesystem timeline format (mactime), dump all resident files in the MFT in their ori…☆13May 10, 2023Updated 3 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- ☆18Nov 10, 2025Updated 9 months ago
- A tool for fetching DFIR and other GitHub tools.☆29Aug 2, 2025Updated last year
- NTFS Security Descriptor Stream ($Secure:$SDS) parser☆14Jan 9, 2023Updated 3 years ago
- Forensic Imaging quickstarts!☆13Aug 2, 2026Updated 3 weeks ago
- Google Filestream Forensic Tool☆22Mar 10, 2022Updated 4 years ago
- Browse Windows Prefetch versions: 17,23,26,30v1/2,31 & some of SuperFetch .7db/.db's☆64Dec 18, 2024Updated last year
- DFIR Timeline Analysis for macOS — SQLite-backed viewer for CSV, TSV, XLSX, EVTX, Plaso, $MFT, and $J files with AI Artifacts, AI Secret …☆343Updated this week
- ☆29Oct 15, 2025Updated 10 months ago
- Python bindings for https://github.com/omerbenamram/mft☆25Dec 23, 2025Updated 8 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A collection of PowerShell scripts for analyzing macOS Forensic Artifacts☆34Mar 16, 2026Updated 5 months ago
- ☆23Mar 12, 2025Updated last year
- A repo that aims to centralize a current, running list of relevant parsers/tools for known DFIR artifacts☆82Oct 20, 2025Updated 10 months ago
- ESXi Cyber Security Incident Response Script☆28Sep 4, 2024Updated last year
- Forensic tool for acquisition, triage and analysis of remote block devices via iSCSI protocol.☆44Oct 25, 2024Updated last year
- Windows Forensics Salt States☆22Updated this week
- ☆11Aug 3, 2018Updated 8 years ago
- lnk_parser is a full rust implementation to parse windows LNK files☆24Feb 17, 2026Updated 6 months ago
- ☆10Aug 11, 2025Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Windows.EDB Browser☆63Mar 6, 2023Updated 3 years ago
- FARO - Document Sensitivity Detector☆10Sep 30, 2022Updated 3 years ago
- Automatic/Custom Destinations & LNK (MS-SHLLINK) Browser☆51Aug 16, 2026Updated last week
- Evtx Log (xml) Browser☆60Mar 12, 2023Updated 3 years ago
- This tool aims at parsing Microsoft Protection logs to provide relevant data to forensic analysts during incident responses.☆22Sep 30, 2022Updated 3 years ago
- WISKESS automates the Windows evidence processing for Incident Response investigations. Rust version.☆17Updated this week
- Outil de triage automatisé de différents types de collectes d'artefacts.☆18Dec 8, 2025Updated 8 months ago
- The most comprehensive NTFS USN Journal parser: full path reconstruction (CyberCX Rewind), TriForce correlation (MFT + LogFile + UsnJrnl)…☆31Jul 28, 2026Updated 3 weeks ago
- LILO based Pulse Secure appliance disk image decryptor☆13Mar 20, 2024Updated 2 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Yet another fseventsd parser for macOS forensics☆12Jul 20, 2024Updated 2 years ago
- Parser for Sdba memory pool tags☆21Jul 16, 2021Updated 5 years ago
- Takes a software bill of materials and outputs provenance, and activity data from trustypkg.dev☆10May 19, 2025Updated last year
- Get extra stat (creation time, access time) from os.FileInfo for golang☆14May 19, 2021Updated 5 years ago
- Sabonis, a Digital Forensics and Incident Response pivoting tool☆20Mar 3, 2022Updated 4 years ago
- Windows EVTX log analysis for DFIR — fast parsing, ATT&CK mapping, IOC extraction, and Sentinel anomaly detection. Normal + Juggernaut Mo…☆56Updated this week
- Forensic cheatsheets for use with cheat☆15Dec 2, 2021Updated 4 years ago