puffyCid / artemisLinks
A cross platform forensic parser written in Rust!
☆101Updated this week
Alternatives and similar repositories for artemis
Users that are interested in artemis are comparing it to the libraries listed below
Sorting:
- A parser for the MFT (Master File Table) format☆155Updated last month
- Forensic framework to build tools that can be reused in multiple projects without changing anything☆32Updated 3 months ago
- Rust bindings for VirusTotal/Yara☆80Updated 2 months ago
- Safe and performant YARA rules evaluator in Rust☆67Updated 2 months ago
- MalwareDB: bookkeeping for malware, goodware, and unknown files with relationship discovery☆56Updated this week
- Rust Library Recognition Project for Rust Malware by the MSTIC-MIRAGE Team☆343Updated last month
- Framework definitions that allow to build a custom SIEM.☆28Updated last year
- Basically a KrabsETW rip-off written in Rust☆83Updated 3 months ago
- Fast, inline geolocation decoration of IPv4 and IPv6 addresses written in Rust☆29Updated 2 years ago
- A feature-complete, extensible, open-source solution for automated file sandboxing and analysis (WIP)☆23Updated 2 weeks ago
- A Rust library for parsing and evaluating Sigma rules☆19Updated 2 months ago
- A Rust library for parsing and writing MS Shell Links (shortcuts, *.lnk)☆32Updated 5 months ago
- Yet another fseventsd parser for macOS forensics☆11Updated last year
- Parsers for common structures across windows formats.☆12Updated 2 years ago
- A Windows registry file parser written in Rust☆41Updated 3 months ago
- A Rust implementation of the Security Support Provider Interface (SSPI) API☆70Updated this week
- Owlyshield is an EDR framework designed to safeguard vulnerable applications from potential exploitation (C&C, exfiltration and impact).☆419Updated last year
- Multi-protocol passive fingerprinting library: TCP/HTTP (p0f-style) + TLS (JA4-style) analysis in Rust☆147Updated this week
- lnk_parser is a full rust implementation to parse windows LNK files☆22Updated 7 months ago
- 🐍 High-performance, multi-threaded YARA & IOC scanner☆256Updated this week
- 🕵️♀️ Find, locate, and query files for ops and security experts ⚡️⚡️⚡️☆37Updated 3 years ago
- Friendly and idiomatic Rust wrappers over SymCrypt☆72Updated 7 months ago
- Safe Rust API to libesedb☆11Updated 5 months ago
- Allows Rust code to log events to ETW☆122Updated last month
- Carve file metadata from NTFS index ($I30) attributes☆71Updated 2 years ago
- A literal string obfuscation library for rust projects☆90Updated 11 months ago
- ☆34Updated last week
- Generate Volatility3 profiles from BTF.☆31Updated last year
- Rust implementation of the DCSO Bloom filter☆29Updated 6 months ago
- A document tagging library☆33Updated 10 months ago