mnrkbys / ma2tlLinks
macOS forensic timeline generator using the analysis result DBs of mac_apt
☆95Updated 2 years ago
Alternatives and similar repositories for ma2tl
Users that are interested in ma2tl are comparing it to the libraries listed below
Sorting:
- Forensic Artifact Collection Tool for macOS☆117Updated 4 months ago
- acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.☆113Updated last week
- JPCERT/CC public YARA rules repository☆110Updated 2 weeks ago
- A toolkit for the post-mortem examination of Docker containers from forensic HDD copies☆107Updated last year
- The core backend server handling API requests and task management☆49Updated last month
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆66Updated 3 years ago
- Digital Forensics Artifacts Knowledge Base☆88Updated last week
- Chrome Logs Events and Protobuf Parser☆39Updated 2 years ago
- Forensic Artifact Collection Tool Matrix☆91Updated last year
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated 2 years ago
- Information about the open-source-dfir slack community☆30Updated 2 years ago
- Forensic tool for acquisition, triage and analysis of remote block devices via iSCSI protocol.☆43Updated last year
- A forensic open-source parser module for Autopsy that allows extracting the messages, comments, posts, contacts, calendar entries and rea…☆111Updated last week
- Memory Baseliner is a script that can compare two windows memory images or perform frequency of occurrence / data stacking analysis on mu…☆56Updated 2 years ago
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆32Updated 3 years ago
- A zero dependency and customizable Python library for scanning Windows and Linux process memory.☆66Updated last year
- ☆88Updated 4 months ago
- Carve file metadata from NTFS index ($I30) attributes☆72Updated last year
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (ext4, XFS) journals (not systemd-journald logs), gene…☆96Updated this week
- YARA rule analyzer to improve rule quality and performance☆107Updated 7 months ago
- WLEAPP is an open source project that aims to parse Windows OS artifacts for the purpose of triage analysis.☆32Updated 2 years ago
- ReWrite of AChoir in Go for Cross Platform☆42Updated 2 weeks ago
- Detection Engineering with YARA☆87Updated last year
- Remote access and Antivirus Logging Database☆44Updated last year
- Quick ESXi Log Parser☆28Updated last month
- ☆19Updated 3 years ago
- Just Another broken Registry Parser (JARP)☆16Updated last year
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆67Updated 2 years ago
- TAPIR is a multi-user, client/server, incident response framework☆47Updated 3 years ago
- ☆38Updated 4 years ago