Python script to parse the Most Recently Used (MRU) plist files on macOS into a more human friendly format.
☆108Feb 22, 2018Updated 8 years ago
Alternatives and similar repositories for macMRU-Parser
Users that are interested in macMRU-Parser are comparing it to the libraries listed below
Sorting:
- macOS/iOS database location scraper to extract location data☆88Oct 26, 2022Updated 3 years ago
- Resources for HFS+ Forensics☆37Nov 15, 2015Updated 10 years ago
- Dump the iOS Frequent Location binary plist files☆89Nov 4, 2018Updated 7 years ago
- Tools for macOS Forensic Bootable media☆15May 20, 2020Updated 5 years ago
- Parse IE, FireFox, Chrome and Safari Cookies for Google Analytic values☆23Sep 3, 2016Updated 9 years ago
- Presentation Archives for my macOS and iOS Related Research☆261Mar 18, 2025Updated 11 months ago
- ☆11Aug 3, 2018Updated 7 years ago
- Apple Pattern of Life Lazy Output'er☆635Feb 25, 2024Updated 2 years ago
- Script to recover deleted entries in an SQLite database☆196Apr 12, 2016Updated 9 years ago
- Parses for Google Analytic values in raw files like RAM, DD images etc.☆18Apr 17, 2016Updated 9 years ago
- Read and extract data from macOS spotlight databases☆128Dec 7, 2025Updated 2 months ago
- macOS Artifact Intelligence Tool☆13Apr 30, 2019Updated 6 years ago
- A GC link parser for both linkfiles and jumplists.☆18Oct 28, 2016Updated 9 years ago
- Different DFIR and CTI utilities☆39May 13, 2020Updated 5 years ago
- Continuous and concurrent autopkg checker with options.☆22Feb 1, 2017Updated 9 years ago
- Parser for OSX/iOS FSEvents Logs☆276Dec 4, 2024Updated last year
- Python Module for parsing Binary Property List and NSKeyedArchiver files☆84Feb 23, 2016Updated 10 years ago
- PowerShell scripts to aid investigators when utilizing O365 and Magnet Axiom.☆12Aug 26, 2024Updated last year
- iOS forensics utility☆12May 8, 2018Updated 7 years ago
- Lite version of PDF X-RAY that uses no backend☆38Nov 11, 2011Updated 14 years ago
- Parse Manifest.mbdb files from iTunes backup directories☆20Jun 29, 2017Updated 8 years ago
- CLBX file format☆20May 13, 2021Updated 4 years ago
- Parser for $LogFile on NTFS☆215Jun 1, 2025Updated 9 months ago
- Scripts developed to help in mobile forensics investigations☆10Jul 4, 2017Updated 8 years ago
- Parse the Mac Quickook index.sqlite database☆56Oct 5, 2016Updated 9 years ago
- EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.☆208Mar 12, 2025Updated 11 months ago
- Decode security descriptors in $Secure on NTFS☆22Feb 24, 2022Updated 4 years ago
- Collection of forensics artifacts location for Mac OS X and iOS☆343Nov 11, 2021Updated 4 years ago
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- Python script to batch query the Tor Relays and Bridges☆38Mar 8, 2019Updated 6 years ago
- A Windows Event Processing Utility☆47Feb 21, 2018Updated 8 years ago
- An advanced parser for INDX records☆29Aug 7, 2019Updated 6 years ago
- iOS Backup Examiner - A forensics tool for parsing an iOS backup's Info.plist file☆23Dec 5, 2016Updated 9 years ago
- A DFVFS Backed Forensic Viewer☆42Apr 13, 2020Updated 5 years ago
- Forensic Artifact Collection Tool for macOS☆118Jul 28, 2025Updated 7 months ago
- macOS (& ios) Artifact Parsing Tool☆1,003Updated this week
- Tool to parse SRU database☆25Mar 1, 2018Updated 8 years ago
- File recovery for APFS☆162Apr 20, 2022Updated 3 years ago
- Why hunt when you can seine?☆21May 12, 2015Updated 10 years ago