msuhanov / Linux-write-blocker
The kernel patch and userspace tools to enable Linux software write blocking
☆139Updated 4 years ago
Alternatives and similar repositories for Linux-write-blocker:
Users that are interested in Linux-write-blocker are comparing it to the libraries listed below
- Digital Forensics Virtual File System (dfVFS)☆207Updated last month
- Command line utility and Python package to ease the (un)mounting of forensic disk images☆122Updated 2 years ago
- The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted driv…☆336Updated 2 years ago
- Comae Hibernation File Decompressor☆143Updated last year
- Page File analysis tools.☆125Updated 9 years ago
- EVTXtract recovers and reconstructs fragments of EVTX log files from raw binary data, including unallocated space and memory images.☆192Updated 4 years ago
- Windows Live Artifacts Acquisition Script☆186Updated 2 years ago
- VolDiff: Malware Memory Footprint Analysis based on Volatility☆194Updated 7 years ago
- Tool suite for inspecting NTFS artifacts.☆218Updated last year
- A modern Python-3-based alternative to RegRipper☆192Updated 2 months ago
- Example programs used in the automating DFIR series☆64Updated 5 years ago
- Checks with NSRL RDS servers looking for for hash matches☆112Updated 3 years ago
- unXOR will search a XORed file and try to guess the key using known-plaintext attacks.☆142Updated 4 years ago
- Differential Analysis of Malware in Memory☆211Updated 7 years ago
- A better strings utility!☆127Updated 3 weeks ago
- Parse Windows Prefetch files: Supports XP - Windows 10 Prefetch files☆115Updated 8 months ago
- CrowdStrike Feed Management System. CrowdFMS is a framework for automating collection and processing of samples from VirusTotal, by lever…☆129Updated 6 years ago
- An AFF4 C++ implementation.☆195Updated last year
- Kirjuri is a web application for managing cases and physical forensic evidence items.☆106Updated 3 years ago
- MantaRay Automated Computer Forensic Triage Tool☆63Updated 6 years ago
- Salt States for Configuring the SIFT Workstation☆98Updated this week
- Script for automating Linux memory capture and analysis☆268Updated 5 years ago
- Python script to decode common encoded PowerShell scripts☆216Updated 6 years ago
- ☆82Updated 2 years ago
- Autoruns plugin for the Volatility framework☆119Updated 5 years ago
- A repository of tools and scripts related to malware analysis☆246Updated 8 years ago
- Yet another registry parser☆130Updated 2 years ago
- Static analysis tools for Microsoft Office Open XML files and documents☆68Updated 7 years ago
- A python application designed to remotely dump RAM of a Linux client and create a volatility profile for later analysis on your local hos…☆161Updated 4 years ago
- An NTFS/FAT parser for digital forensics & incident response☆198Updated 3 months ago