The kernel patch and userspace tools to enable Linux software write blocking
☆154May 25, 2020Updated 6 years ago
Alternatives and similar repositories for Linux-write-blocker
Users that are interested in Linux-write-blocker are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- A DFVFS Backed Forensic Viewer☆42Apr 13, 2020Updated 6 years ago
- Yet another registry parser☆138Apr 15, 2022Updated 4 years ago
- Discover potential timestamps within the Windows Registry☆19Apr 22, 2014Updated 12 years ago
- An AFF4 C++ implementation.☆216Mar 24, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- An NTFS journal parser☆80Mar 3, 2016Updated 10 years ago
- VMware Snapshot Forensic Comparison Scripts☆25Mar 19, 2013Updated 13 years ago
- Libewf is a library to access the Expert Witness Compression Format (EWF)☆310Updated this week
- An NTFS/FAT parser for digital forensics & incident response☆233Oct 31, 2025Updated 7 months ago
- Binaries for the log2timeline projects and dependencies☆40May 14, 2026Updated last month
- This is a GUI (for Windows 64 bit) for a procedure to virtualize your EWF(E01), DD (raw), AFF disk image file without converting it, dire…☆54Oct 15, 2019Updated 6 years ago
- Allows you to quickly query a Windows machine for RAM artifacts☆219Jul 17, 2020Updated 5 years ago
- Various scrips☆12Oct 19, 2022Updated 3 years ago
- Tools from WFA 4/e, timeline tools, etc.☆146Feb 29, 2024Updated 2 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Legacy version of libewf☆14Jun 7, 2026Updated last week
- Evidence Fetcher (efetch) is a web-based file explorer, viewer, and analyzer.☆39Apr 11, 2020Updated 6 years ago
- Truecrypt volume parsing library☆34Jun 16, 2020Updated 5 years ago
- Simple Imaging. Tactical Triage. Zero Clicks.☆19Oct 31, 2017Updated 8 years ago
- Server for receiving autorun data from the clients☆13Sep 26, 2017Updated 8 years ago
- An updated C# port of X-Ways X-Tensions API.☆11Mar 12, 2018Updated 8 years ago
- X-Ways C# X-Tension API☆17May 28, 2013Updated 13 years ago
- Registry Miner☆14Apr 10, 2018Updated 8 years ago
- Forensic Scripts☆157Mar 28, 2025Updated last year
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- A simple utility for stripping out either the SHA-1, MD5 or CRC values alone from the NSRL hash database☆14Nov 19, 2021Updated 4 years ago
- Forensic Analysis Tool for Btrfs File System.☆20Aug 6, 2018Updated 7 years ago
- Code for the USB write blocker built on the FTDI VNC2 development board☆10Aug 17, 2021Updated 4 years ago
- It is based on bulk_extractor (https://github.com/simsong/bulk_extractor) and add scanners for record carving☆43Apr 23, 2020Updated 6 years ago
- MantaRay Automated Computer Forensic Triage Tool☆65Feb 19, 2019Updated 7 years ago
- AFF4 Standard Documents☆30Feb 4, 2022Updated 4 years ago
- ForGe Forensic test image generator☆35Mar 19, 2015Updated 11 years ago
- Emulates the Sysinternals Autoruns tool, but for DFIR purposes e.g. multi user processing☆55May 18, 2019Updated 7 years ago
- SQL scripts for querying event logs☆22Jul 12, 2017Updated 8 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- MacOS incident Response Toolkit. Mostly written while stuck on a NJTransit train.☆20Feb 20, 2020Updated 6 years ago
- LNK to JSON☆14Mar 7, 2019Updated 7 years ago
- Extract compressed memory pages from page-aligned data☆47Sep 25, 2018Updated 7 years ago
- The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted driv…☆345Jun 25, 2022Updated 3 years ago
- iOS Backup Examiner - A forensics tool for parsing an iOS backup's Info.plist file☆23Dec 5, 2016Updated 9 years ago
- Web interface for the Volatility Memory Forensics Framework☆259Nov 21, 2017Updated 8 years ago
- Pre-Ingest Tool for creating submission information packages☆24Sep 13, 2024Updated last year