libyal / dtformatsLinks
Collection of data formats
☆189Updated last week
Alternatives and similar repositories for dtformats
Users that are interested in dtformats are comparing it to the libraries listed below
Sorting:
- A parser for Unified logging tracev3 files☆95Updated 5 months ago
- File recovery for APFS☆161Updated 3 years ago
- Parser for OSX/iOS FSEvents Logs☆268Updated last year
- A command line tool for pstree-like output on macOS with additional pid capturing capabilities☆268Updated last year
- Library and tools to access the Mac OS Hierarchical File System (HFS)☆37Updated 2 weeks ago
- macOS Endpoint Security Message Analysis Tool☆47Updated 3 years ago
- Automatically exported from code.google.com/p/mac-osx-forensics☆28Updated 9 years ago
- Forensic Artifact Collection Tool for macOS☆116Updated 5 months ago
- Mapping XProtect's obfuscated malware family names to common industry names.☆90Updated last month
- This is a work-in-progress command line tool for reversing run-only AppleScripts. It will help parse the output of applescript-disassembl…☆71Updated 4 years ago
- AFF4 Standard Documents☆29Updated 3 years ago
- Yet another library library (and tools)☆215Updated last week
- APFS filesystem format for Kaitai Struct☆82Updated 3 years ago
- SQLite queries☆84Updated 2 years ago
- machofile is a module to parse Mach-O binary files☆90Updated 4 months ago
- A simple run-only applescript disassembler☆140Updated 2 weeks ago
- macOS XProtect definition files☆40Updated 3 years ago
- Read and extract data from macOS spotlight databases☆123Updated 3 weeks ago
- Parser fo macOS/iOS FSEvents Logs☆40Updated last year
- Windows registry file format specification☆352Updated 7 years ago
- An AFF4 C++ implementation.☆210Updated 2 years ago
- A cross platform parser for Apple UnifiedLogs!☆303Updated last week
- Forensic toolkit for iOS sysdiagnose feature☆242Updated this week
- Library and tools to access the Windows Prefetch File (SCCA) format.☆81Updated last week
- Slides and material from my conference presentations☆16Updated last year
- Scripts to process macOS forensic artifacts☆202Updated last year
- A timestamp and date decoder written for python 3☆41Updated 2 weeks ago
- Python script to parse the Most Recently Used (MRU) plist files on macOS into a more human friendly format.☆104Updated 7 years ago
- AFF is an open and extensible file format to store disk images and associated metadata.☆91Updated 3 months ago
- Helper scripts to automate the extraction of YARA rules from XProtectRemediators☆22Updated last year