strozfriedberg / liblightgrepLinks
Fast multipattern regular expression searching for digital forensics
☆18Updated 6 years ago
Alternatives and similar repositories for liblightgrep
Users that are interested in liblightgrep are comparing it to the libraries listed below
Sorting:
- An NTFS journal parser☆81Updated 9 years ago
- A Windows Event Processing Utility☆47Updated 7 years ago
- Python IOC Editor☆64Updated 10 years ago
- A GC link parser for both linkfiles and jumplists.☆18Updated 9 years ago
- Server for receiving autorun data from the clients☆13Updated 8 years ago
- stoQ Public Plugins☆71Updated 2 years ago
- SysScout is a fully encapsulated script that quickly and easily pulls local machine information from Linux-Based systems. A simple, easy…☆13Updated 8 years ago
- Digital Forensics Windows Registry (dfWinReg)☆52Updated 3 weeks ago
- Extract information from MISP via the API☆16Updated 9 years ago
- Various DFIR Tools☆26Updated 7 years ago
- MantaRay Automated Computer Forensic Triage Tool☆65Updated 6 years ago
- Checks with NSRL RDS servers looking for for hash matches☆115Updated 4 years ago
- hashdb block hash database tool and API☆45Updated 6 years ago
- Validates yara rules and tries to repair the broken ones.☆40Updated 5 years ago
- AFF4 Standard Documents☆29Updated 3 years ago
- Validate IOC from MISP ; Export results and iocs to SIEM and sensors using syslog and CEF format☆14Updated 9 years ago
- Proof-of-concept automated baremetal malware analysis framework.☆14Updated 10 years ago
- Open source Python library for NTFS analysis☆81Updated 7 years ago
- openioc_scan Volatility Framework plugin☆43Updated 9 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 7 years ago
- Python-based cloud node for local use☆11Updated 7 years ago
- Splunk integration with MISP☆12Updated 7 years ago
- Different DFIR and CTI utilities☆37Updated 5 years ago
- BSidesLV 2015 Exploit Kit Analysis Workshop Files☆27Updated 10 years ago
- Multiple rules for yara-project for detect compiler/packer/protector☆33Updated 5 years ago
- Extract common Windows artifacts from source images and VSCs☆63Updated 4 years ago
- Tool to parse SRU database☆25Updated 7 years ago
- ☆19Updated 7 years ago
- misc scripts☆36Updated 7 years ago
- Automating forensic data extraction, reduction, and overall triage of cold disk and memory images.☆21Updated 6 years ago