unix_collector is a Live Response collection script for Incident Response on UNIX-like systems using native binaries. Supports AIX, Android, ESXi, FreeBSD, Linux, macOS, NetBSD, NetScaler, OpenBSD and Solaris systems artifacts.
☆44Jun 18, 2026Updated 3 months ago
Alternatives and similar repositories for unix_collector
Users that are interested in unix_collector are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Forensic cheatsheets for use with cheat☆16Dec 2, 2021Updated 4 years ago
- Script for automating Linux memory capture and analysis☆12May 6, 2020Updated 6 years ago
- C & Shellcode Playground..☆10Dec 2, 2017Updated 8 years ago
- Fork this repo! Do a Pull Request! As many times as you want! Learn the ins and outs of how to contribute to GitHub! Make your mistakes h…☆15Jun 21, 2024Updated 2 years ago
- Stand-alone parser for User Access Logging from Server 2012 and newer systems☆79Jan 9, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- Windows Forensics Salt States☆22Updated this week
- Links to various memory samples☆50Jun 5, 2026Updated 3 months ago
- Papers and Presentations from the DFRWS Conferences☆20Jul 12, 2022Updated 4 years ago
- A better strings utility!☆152Apr 26, 2026Updated 5 months ago
- A simple utility for stripping out either the SHA-1, MD5 or CRC values alone from the NSRL hash database☆14Nov 19, 2021Updated 4 years ago
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆70Sep 13, 2023Updated 3 years ago
- Incident Response collection and processing scripts with automated reporting scripts☆339Jun 25, 2024Updated 2 years ago
- 🧭 The artifactcollector is a customizable agent to collect forensic artifacts on any Windows, macOS or Linux system☆309May 7, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆61Apr 28, 2026Updated 4 months ago
- Binary commandline executable to parse ETL files