ktneely / forensics
shell script to create an image and perform initial examination on a drive
☆15Updated 4 years ago
Alternatives and similar repositories for forensics:
Users that are interested in forensics are comparing it to the libraries listed below
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆42Updated 4 years ago
- Metadata Inspection Database Alerting System☆42Updated 11 years ago
- This repository is a curated list of pro bono incident response entities.☆20Updated last year
- MantaRay Automated Computer Forensic Triage Tool☆63Updated 6 years ago
- Maltego Transform to put entities into MISP events☆26Updated 3 years ago
- Home to the ActorTrackr source code☆24Updated 7 years ago
- Yara Scanner For IMAP Feeds and saved Streams☆28Updated 5 years ago
- ☆11Updated 6 years ago
- An active domain name query tool to help keep track of domain name movements...☆15Updated 3 years ago
- Fast incident overview☆39Updated 8 years ago
- FireEye Alert json files to MISP Malware information sharing plattform (Alpha)☆32Updated 7 years ago
- PowerShell based Live Response tool☆12Updated 9 years ago
- Python bindings for Yeti's API☆18Updated last year
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated 2 years ago
- Using osquery for Mass Incident Detection & Response☆19Updated 8 years ago
- Discover potential timestamps within the Windows Registry☆18Updated 10 years ago
- Maltego transform for OpenDNS Investigate API☆13Updated 10 years ago
- CRITs IOC Visualization in Maltego☆28Updated 10 years ago
- Build Automated Machine Images for MISP☆28Updated last year
- Performs OCR on image files and scans them for matches to YARA rules☆40Updated 6 years ago
- ☆31Updated 3 months ago
- Small scripts and POCs related to digital forensics☆17Updated 2 years ago
- macOS triage is a python script to collect various macOS logs, artifacts, and other data.☆26Updated 3 years ago
- REST API based malware repository (abandoned)☆108Updated 9 years ago
- A homebrewed cyber threat intelligence solution☆20Updated 12 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- RegRipper wrapper for simplified bulk parsing or registry hives☆9Updated 6 years ago
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Updated 3 years ago
- Incident Response Scripts☆30Updated 4 years ago
- This module installs and configures MISP (Malware Information Sharing Platform)☆13Updated 2 weeks ago