obsidianforensics / scriptsLinks
Small scripts and POCs related to digital forensics
☆18Updated 3 years ago
Alternatives and similar repositories for scripts
Users that are interested in scripts are comparing it to the libraries listed below
Sorting:
- CIRCL system forensic tools or a jumble of tools to support forensic☆41Updated 2 years ago
- MacOS incident Response Toolkit. Mostly written while stuck on a NJTransit train.☆20Updated 5 years ago
- Tools for parsing Forensic images☆41Updated 7 years ago
- A simple many-rules to many-files YARA scanner for incident response or malware zoos.☆27Updated 7 years ago
- Python bindings for Yeti's API☆19Updated 2 years ago
- Fast Evidence Collector Toolkit is an incident response toolkit to collect evidences on a suspicious windows computer☆41Updated 5 years ago
- Fix acquired .evt - Windows Event Log files (Forensics)☆18Updated 9 years ago
- Home to the ActorTrackr source code☆24Updated 8 years ago
- Plugins to add funtionality to ProcDOT. http://www.procdot.com☆25Updated 2 years ago
- Performs OCR on image files and scans them for matches to YARA rules☆42Updated 7 years ago
- Yara Scanner For IMAP Feeds and saved Streams☆28Updated 6 years ago
- Attempt to replicate the functions of auto_rip by Corey Harrell in Python.☆12Updated last year
- Fast incident overview☆41Updated 8 years ago
- Automated Memory Forensic☆34Updated 7 years ago
- Registry Miner☆14Updated 7 years ago
- Carve $MFT records from a chunk of data (for instance a memory dump)☆16Updated 9 years ago
- A DFVFS Backed Forensic Viewer☆41Updated 5 years ago
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Updated 4 years ago
- Forensics triage tool relying on Volatility and Foremost☆25Updated 2 years ago
- Parses Java Cache IDX files☆40Updated 7 years ago
- ☆54Updated 5 years ago
- Scripts and tools created for appx analysis talk (Magnet summit 2019)☆19Updated last year
- Python-based cloud node for local use☆11Updated 7 years ago
- Rekall Forensics and Incident Response Framework with rVMI extensions☆33Updated 4 years ago
- Python parser for Red Canary's Atomic Red Team Yamls☆27Updated 6 years ago
- Site for IWS book content☆17Updated 7 years ago
- Threat Intel and Incident Reponse☆10Updated 7 years ago
- Script to parse Process Monitor XML log file, and give you a summary report.☆24Updated 9 years ago
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Updated 8 years ago
- DocBleachShell is the integration of the great DocBleach, https://github.com/docbleach/DocBleach Content Disarm and Reconstruction tool i…☆21Updated 4 years ago