obsidianforensics / SQUIDLinks
"Fuzzy matching" for SQLite databases
☆30Updated 5 years ago
Alternatives and similar repositories for SQUID
Users that are interested in SQUID are comparing it to the libraries listed below
Sorting:
- Discover potential timestamps within the Windows Registry☆19Updated 11 years ago
- Lite version of PDF X-RAY that uses no backend☆38Updated 14 years ago
- Digital Forensics Windows Registry (dfWinReg)☆54Updated 3 weeks ago
- BSidesLV 2015 Exploit Kit Analysis Workshop Files☆27Updated 10 years ago
- Email Abuse - A Versatile Software for Email review, analysis and reporting☆21Updated 10 years ago
- AFF4 Standard Documents☆29Updated 3 years ago
- Useful scripts, rules etc. for use with YARA☆27Updated 4 years ago
- MantaRay Automated Computer Forensic Triage Tool☆65Updated 6 years ago
- Maltego Transform to put entities into MISP events☆28Updated 4 years ago
- The ContactDB project was initiated to cover the need for a tool to maintain contacts for CSIRT teams☆37Updated 3 years ago
- Carves EXEs from given data files, using intelligent carving based upon PE headers☆38Updated 8 years ago
- hashdb block hash database tool and API☆45Updated 6 years ago
- An NTFS journal parser☆80Updated 9 years ago
- A script to mine SQLite databases for hidden gems that might be overlooked☆57Updated 5 years ago
- onigiri - remote malware triage script☆24Updated 10 years ago
- ssdeep based clustering tool☆14Updated 10 years ago
- Command line utility and Python package to ease the (un)mounting of forensic disk images☆124Updated 2 years ago
- Parse IE, FireFox, Chrome and Safari Cookies for Google Analytic values☆23Updated 9 years ago
- Extract information from MISP via the API☆16Updated 9 years ago
- VPS infrastructure found in HT dumps☆26Updated 10 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆41Updated 2 years ago
- Different DFIR and CTI utilities☆37Updated 5 years ago
- Yara is awesome, but sometimes you need to manipulate the data streams you're scanning in different ways.☆98Updated 11 years ago
- Yara syntax highlighting☆25Updated 4 years ago
- Some dfir stuff☆30Updated 4 years ago
- Checks with NSRL RDS servers looking for for hash matches☆115Updated 4 years ago
- Workbench: A scalable python framework for security research and development teams.☆92Updated 6 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 6 years ago
- tracy - a system call tracer and injector. Find us in #tracy on irc.freenode.net☆34Updated last year
- openioc_scan Volatility Framework plugin☆44Updated 9 years ago