pinesol93 / MemoryForensicSamples
Links to various memory samples
☆25Updated 3 weeks ago
Alternatives and similar repositories for MemoryForensicSamples:
Users that are interested in MemoryForensicSamples are comparing it to the libraries listed below
- ☆64Updated 2 years ago
- Some important DFIR Resources☆83Updated last year
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆68Updated last year
- Windows Forensics Environment Builder☆124Updated 2 weeks ago
- A hex viewer for the sleuths!☆17Updated last year
- A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.☆151Updated 7 months ago
- ☆65Updated last month
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆94Updated last year
- A repo that aims to centralize a current, running list of relevant parsers/tools for known DFIR artifacts☆56Updated 2 months ago
- Harness the power of Splunk for your investigations☆83Updated last month
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆30Updated 2 years ago
- Incident Response documents and tooling☆68Updated last year
- Parses USB connection artifacts from offline Registry hives☆93Updated last month
- Random notes collected on the intertubes relating to DFIR☆32Updated last year
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆82Updated this week
- Case_Notes.py is a cross-platform (Windows, macOS, & Linux) python script to help make the documentation process easier.☆26Updated last year
- Memory Baseliner is a script that can compare two windows memory images or perform frequency of occurrence / data stacking analysis on mu…☆50Updated last year
- The Threat Actor Profile Guide for CTI Analysts☆102Updated last year
- SIEM Cheat Sheet