labcif / YPALinks
Autopsy plugin to extract information from the 'Your Phone' Windows 10 App
☆13Updated 4 years ago
Alternatives and similar repositories for YPA
Users that are interested in YPA are comparing it to the libraries listed below
Sorting:
- Backstage Parser☆32Updated 3 years ago
- Forensics triage tool relying on Volatility and Foremost☆26Updated last year
- Parser for Sdba memory pool tags☆19Updated 4 years ago
- A script to assist in processing forensic RAM captures for malware triage☆27Updated 4 years ago
- CyberChef update scripts in PowerShell & Bash☆16Updated last year
- Windows 10 Live Information viewer☆36Updated 3 years ago
- Scripts and tools created for appx analysis talk (Magnet summit 2019)☆18Updated last year
- ☆33Updated 8 months ago
- Git for me to put all my forensics stuff☆22Updated 2 weeks ago
- Web interface for monitoring and interacting with Netflow data stored in Silk repositories.☆13Updated 6 years ago
- PowerShell version of Fail2Ban☆12Updated 5 years ago
- isodump - ISO dump utility☆41Updated 6 years ago
- ☆18Updated 7 years ago
- unix_collector is a Live Response collection script for Incident Response on UNIX-like systems using native binaries. Supports AIX, Andro…☆37Updated 3 months ago
- Python web app for previewing data in a Chrome Profile Folder☆23Updated last year
- An npm package for extracting common IoC (Indicator of Compromise) from a block of text☆58Updated 2 weeks ago
- Autopsy Module to analyze Registry Hives☆15Updated 3 years ago
- Toolset to analyze disks encrypted with McAFee FDE technology☆19Updated 4 years ago
- Network Forensic Extendable Analysis Tool☆39Updated 3 years ago
- Quick & Dirty DFIR scripts developed by Ebryx DFIR team to keep handy during field assignment☆14Updated 3 months ago
- A powershell parser for https://github.com/ufrisk/MemProcFS☆44Updated 4 years ago
- Hashes of infamous malware☆26Updated 2 years ago
- GreyNoise Maltego integration and transforms☆20Updated 2 years ago
- Convert Windows Netmon Monitor Mode Wireless Packet Captures to Libpcap Format☆15Updated 6 years ago
- A sample VHDX file with multiple verbose examples of forensic and anti-forensics artifacts. Meant to be basic and can be expanded upon. P…☆28Updated 2 years ago
- Extracts Windows user info including the password hashes☆40Updated 9 years ago
- Carve $MFT records from a chunk of data (for instance a memory dump)☆16Updated 9 years ago
- RisingSun: Decoding SUNBURST C2 to identify infected hosts without network telemetry.☆10Updated 4 years ago
- Various short scripts and tools used for Digital Forensics☆14Updated 5 months ago
- A Darktrace CLI written in Python☆16Updated 5 years ago