libyal / dtformatsLinks
Collection of data formats
☆180Updated this week
Alternatives and similar repositories for dtformats
Users that are interested in dtformats are comparing it to the libraries listed below
Sorting:
- A parser for Unified logging tracev3 files☆90Updated last week
- Automatically exported from code.google.com/p/mac-osx-forensics☆28Updated 9 years ago
- File recovery for APFS☆160Updated 3 years ago
- Forensic Artifact Collection Tool for macOS☆112Updated last week
- machofile is a module to parse Mach-O binary files☆72Updated this week
- This is a work-in-progress command line tool for reversing run-only AppleScripts. It will help parse the output of applescript-disassembl…☆69Updated 4 years ago
- macOS Endpoint Security Message Analysis Tool☆47Updated 3 years ago
- ☆261Updated 3 weeks ago
- Yet another library library (and tools)☆211Updated 7 months ago
- AFF4 Standard Documents☆29Updated 3 years ago
- Parser fo macOS/iOS FSEvents Logs☆36Updated last year
- Forensic toolkit for iOS sysdiagnose feature☆208Updated last week
- Slides and material from my conference presentations☆16Updated last year
- Mapping XProtect's obfuscated malware family names to common industry names.☆86Updated last year
- APFS filesystem format for Kaitai Struct☆82Updated 3 years ago
- Parse Manifest.mbdb files from iTunes backup directories☆20Updated 8 years ago
- A simple run-only applescript disassembler☆126Updated 3 years ago
- Library and tools to access the Mac OS Hierarchical File System (HFS)☆37Updated last year
- macOS .DS_Store Parser☆67Updated 3 years ago
- SQLite queries☆82Updated 2 years ago
- Scripts to process macOS forensic artifacts☆197Updated last year
- The Python implementation of the AFF4 standard.☆44Updated last year
- AFF is an open and extensible file format to store disk images and associated metadata.☆88Updated 4 months ago
- Parser for OSX/iOS FSEvents Logs☆256Updated 8 months ago
- Scripts to parse various iOS sysdiagnose logs. Based upon the forensic research of Mattia Epifani, Heather Mahalik and Cheeky4n6monkey.☆196Updated 2 years ago
- A small tool to easily mount APFS image on macOS for forensics.☆16Updated 5 years ago
- A timestamp and date decoder written for python 3☆39Updated 2 months ago
- An AFF4 C++ implementation.☆206Updated 2 years ago
- NTFS parser, plus linking capabilites between MFT LogFile and UsnJrnl☆37Updated 8 years ago
- Library and tools to access the Windows Prefetch File (SCCA) format.☆76Updated 7 months ago