nicoleibrahim / DSStoreParser
macOS .DS_Store Parser
☆61Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for DSStoreParser
- Forensic Artifact Collection Tool for macOS☆98Updated 2 months ago
- Digital Forensics Artifacts Knowledge Base☆75Updated 6 months ago
- macOS forensic timeline generator using the analysis result DBs of mac_apt☆89Updated last year
- Logbook for Digital Forensics and Incident Response☆49Updated 4 months ago
- Stand-alone parser for User Access Logging from Server 2012 and newer systems☆71Updated 10 months ago
- Scripts for MacOS related tasks.☆17Updated 4 years ago
- Script that checks for available updates for the most commonly used Digital Forensics tools☆57Updated 3 years ago
- A parser for Unified logging tracev3 files☆80Updated 10 months ago
- Parser fo macOS/iOS FSEvents Logs☆26Updated 6 months ago
- acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.☆91Updated this week
- Scripts from my book OS X Incident Response Scripting and Analysis -> https://www.amazon.com/dp/012804456X/ref=cm_sw_r_tw_dp_U_x_fQeLAb68…☆49Updated 8 years ago
- Chrome Logs Events and Protobuf Parser☆34Updated last year
- The home of the BriMor Labs rdpieces Perl script that tries to rebuild parsed RDP Bitmap Cache images☆78Updated last year
- Collection of scripts provided for public use☆31Updated last week
- Carves and recreates VSS catalog and store from Windows disk image.☆96Updated last year
- A GeoIP lookup utility utilizing ipinfo.io services.☆84Updated 11 months ago
- ReWrite of AChoir in Go for Cross Platform☆35Updated last week
- Information about the open-source-dfir slack community☆27Updated last year
- A triage data collection script for macOS☆26Updated 3 years ago
- ☆211Updated this week
- Swift Command line tool used for proactive detection of malicious activity on macOS systems.☆68Updated 4 years ago
- Linux Evidence Acquisition Framework☆113Updated last month
- Memory Baseliner is a script that can compare two windows memory images or perform frequency of occurrence / data stacking analysis on mu…☆49Updated last year
- WLEAPP is an open source project that aims to parse Windows OS artifacts for the purpose of triage analysis.☆31Updated last year
- Different DFIR and CTI utilities☆36Updated 4 years ago
- A DFVFS Backed Forensic Viewer☆39Updated 4 years ago
- Mapping XProtect's obfuscated malware family names to common industry names.☆82Updated 6 months ago
- Documentation site for Velociraptor☆37Updated last week