puffyCid / artemisLinks
A cross platform forensic parser written in Rust!
☆83Updated this week
Alternatives and similar repositories for artemis
Users that are interested in artemis are comparing it to the libraries listed below
Sorting:
- Framework definitions that allow to build a custom SIEM.☆27Updated 9 months ago
- A parser for the MFT (Master File Table) format☆140Updated last year
- Safe and performant YARA rules evaluator in Rust☆64Updated 3 weeks ago
- Rust bindings for VirusTotal/Yara☆77Updated 3 months ago
- Forensic framework to build tools that can be reused in multiple projects without changing anything☆27Updated 3 months ago
- A Rust library for parsing and evaluating Sigma rules☆13Updated last month
- lnk_parser is a full rust implementation to parse windows LNK files☆20Updated last month
- A Windows registry file parser written in Rust☆38Updated last year
- Basically a KrabsETW rip-off written in Rust☆70Updated 10 months ago
- A document tagging library☆30Updated 2 months ago
- Safe Rust API to libesedb☆10Updated last week
- File Capability Extractor☆13Updated 3 months ago
- Windows Thingies... but in Rust☆23Updated 2 years ago
- Wrapper for TSK (Sleuth Kit) Bindings☆12Updated 2 years ago
- USN Journal full path builder☆60Updated 9 months ago
- Windows file metadata / forensic tool.☆18Updated 9 months ago
- Sanctum is an experimental proof-of-concept EDR, designed to detect modern malware techniques, above and beyond the capabilities of antiv…☆233Updated 2 weeks ago
- Rust implementation of the DCSO Bloom filter☆28Updated 2 months ago
- LOKI2 - Simple IOC and YARA Scanner☆94Updated 10 months ago
- Generate Volatility3 profiles from BTF.☆24Updated 6 months ago
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (ext4, XFS) journals (not systemd-journald logs), gene…☆75Updated this week
- This repository contains helper scripts and custom configs to get the best out of Google's Timesketch project.☆109Updated last year
- MalwareDB: bookkeeping for malware, goodware, and unknown files with relationship discovery☆47Updated this week
- Rust crate for accessing keys, values, and data stored in Windows hive (registry) files.☆47Updated 5 months ago
- Parses USB connection artifacts from offline Registry hives☆99Updated last week
- Parsers for common structures across windows formats.☆12Updated last year
- The Dissect module tying all other Dissect modules together. It provides a programming API and command line tools which allow easy access…☆65Updated this week
- clean interface for the windows event log☆24Updated last year
- Scanner for certain IoCs☆11Updated 4 months ago
- Cyber threat intelligence crates for Rust☆15Updated last year