obsidianforensics / SQUIDLinks
"Fuzzy matching" for SQLite databases
☆30Updated 5 years ago
Alternatives and similar repositories for SQUID
Users that are interested in SQUID are comparing it to the libraries listed below
Sorting:
- Resources for HFS+ Forensics☆37Updated 9 years ago
- Digital Forensics Windows Registry (dfWinReg)☆52Updated 6 months ago
- Find Unicode (including Internationalized) domain squats. https://xntwist.hightower.space/☆22Updated 2 years ago
- Email Abuse - A Versatile Software for Email review, analysis and reporting☆21Updated 9 years ago
- Graph-theoretical investigation of a corpus of malware obtained from the web☆21Updated 11 years ago
- hashdb block hash database tool and API☆44Updated 6 years ago
- Scripts to extract compound bplists in the iOS -> KnowledgeC.db -> structuredmetadata table.☆26Updated 6 years ago
- Useful scripts, rules etc. for use with YARA☆27Updated 4 years ago
- Carves EXEs from given data files, using intelligent carving based upon PE headers☆39Updated 8 years ago
- Yara syntax highlighting☆25Updated 3 years ago
- Why hunt when you can seine?☆21Updated 10 years ago
- Discover potential timestamps within the Windows Registry☆19Updated 11 years ago
- Python libary to normalize Yara signatures☆19Updated 4 years ago
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆33Updated last year
- Compressed Rich Text Format (RTF) compression and decompression in Python☆23Updated 2 weeks ago
- Recurse through a registry, identifying values with large data -- a registry malware hunter☆44Updated 8 years ago
- Extract useful information from a Twitter account.☆34Updated 11 years ago
- Unpack MIME attachments from a file and check them against virustotal.com☆44Updated 9 years ago
- A Volatility plugin for finding sqlite database rows☆22Updated 6 years ago
- Scalable Binary Data Extraction in Hadoop☆143Updated 11 years ago
- PowerShell Utilities for Security Situational Awareness☆12Updated 8 years ago
- Help summarize a PCAP file☆33Updated 13 years ago
- Python scripts for parsing the index file and individual cache files from the cache2 folder of Firefox defaulted on in version 32☆25Updated 6 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated 2 years ago
- Artefacts from various retefe campaigns☆10Updated 6 years ago
- Extract information from MISP via the API☆15Updated 8 years ago
- CRL Monitor - X.509 Certificate Revocation List monitoring and X.509/Subject caching☆34Updated 4 years ago
- ☆46Updated 8 years ago
- Virus names generator☆28Updated 10 years ago
- Performs OCR on image files and scans them for matches to YARA rules☆41Updated 6 years ago