labcif / YPA
Autopsy plugin to extract information from the 'Your Phone' Windows 10 App
☆13Updated 4 years ago
Alternatives and similar repositories for YPA:
Users that are interested in YPA are comparing it to the libraries listed below
- Parser for Sdba memory pool tags☆18Updated 3 years ago
- Scripts and tools created for appx analysis talk (Magnet summit 2019)☆16Updated last year
- Scan and decode NetWire logs☆11Updated 2 years ago
- Android Usagestats XML + Protobuf Parser☆22Updated 4 years ago
- Browser History Histogram -- module for the Autopsy Forensic Browser☆11Updated 5 years ago
- Forensics triage tool relying on Volatility and Foremost☆25Updated last year
- Autopsy Module to analyze Registry Hives☆15Updated 3 years ago
- http://moaistory.blogspot.com/2016/08/ie10analyzer.html☆16Updated 8 months ago
- Digital Forensics date and time☆23Updated 3 months ago
- ☆9Updated 5 years ago
- Powershell scripts☆12Updated 2 years ago
- Various Topics☆15Updated 2 years ago
- Windows 10 Live Information viewer☆36Updated 3 years ago
- Database of backdoor passwords used by Malware, uncovered by the Malvuln project.☆26Updated 5 months ago
- This repository contains a variety of plugins and scripts, related to the Volatility framework.☆11Updated 2 months ago
- A C# (.NET 6) tool to compare the file signature of files recursively and inform the user of matches and mismatches☆16Updated 4 months ago
- A quick reference guide for python script development in DFIR☆16Updated last year
- Just Another broken Registry Parser (JARP)☆16Updated 10 months ago
- Python web app for previewing data in a Chrome Profile Folder☆20Updated 9 months ago
- NTFS file system specimens☆13Updated last year
- isodump - ISO dump utility☆40Updated 5 years ago
- Backstage Parser☆31Updated 2 years ago
- Google Chrome internals analysis using Volatility☆42Updated 2 years ago
- An updated C# port of X-Ways X-Tensions API.☆12Updated 7 years ago
- Host IDS for desktop users☆11Updated 4 years ago
- volatility-runner is a command line application designed to speed up memory forensics using the volatility framework, primarily for insta…☆11Updated 5 years ago
- WLEAPP is an open source project that aims to parse Windows OS artifacts for the purpose of triage analysis.☆30Updated last year
- A PowerShell Module Dedicated to Reverse Engineering☆14Updated 5 years ago
- Gmail URL Decoder is an Open Source Python tool that can be used against plaintext or arbitrary raw data files in order to find, extract,…☆55Updated 5 years ago
- A DFVFS Backed Forensic Viewer☆40Updated 5 years ago