ydkhatri / MacForensics
Scripts to process macOS forensic artifacts
☆184Updated 5 months ago
Alternatives and similar repositories for MacForensics:
Users that are interested in MacForensics are comparing it to the libraries listed below
- Read and extract data from macOS spotlight databases☆105Updated last year
- macOS .DS_Store Parser☆61Updated 3 years ago
- Parser for OSX/iOS FSEvents Logs☆239Updated last month
- A parser for Unified logging tracev3 files☆82Updated last year
- Forensic Artifact Collection Tool for macOS☆104Updated 4 months ago
- A command line tool for pstree-like output on macOS with additional pid capturing capabilities☆247Updated 4 months ago
- File recovery for APFS☆158Updated 2 years ago
- ☆224Updated this week
- Python utilities related to plists☆52Updated 11 months ago
- Scripts to parse various iOS sysdiagnose logs. Based upon the forensic research of Mattia Epifani, Heather Mahalik and Cheeky4n6monkey.☆178Updated 2 years ago
- Collection of SQL query templates for digital forensics use by platform and application.☆102Updated 3 years ago
- Apple Pattern of Life Lazy Output'er☆570Updated 10 months ago
- Collection of forensics artifacts location for Mac OS X and iOS☆326Updated 3 years ago
- macOS (& ios) Artifact Parsing Tool☆798Updated this week
- Swift Command line tool used for proactive detection of malicious activity on macOS systems.☆68Updated 4 years ago
- Python script to parse the Most Recently Used (MRU) plist files on macOS into a more human friendly format.☆101Updated 6 years ago
- And open-source version of % sfltool dumpbtm☆117Updated last year
- A library to parse macOS FsEvents☆18Updated 2 years ago
- Mapping XProtect's obfuscated malware family names to common industry names.☆83Updated 8 months ago
- Post-Infection Collection Toolkit☆93Updated last year
- NSKeyedArchive plist deserializer☆23Updated 4 months ago
- Quick iOS Backup UnFunkerizor☆20Updated 3 years ago
- Python Module for parsing Binary Property List and NSKeyedArchiver files☆79Updated 8 years ago
- Parser fo macOS/iOS FSEvents Logs☆28Updated 8 months ago
- Queries to use on the store.cloudphotodb database. Provides you with iCloud Photos Sync directions and other information☆12Updated last year
- Chrome Logs Events and Protobuf Parser☆36Updated 2 years ago
- Automatically exported from code.google.com/p/mac-osx-forensics☆27Updated 9 years ago
- Vehicle Logs Events And Properties Parser☆80Updated last month
- Various scripts for macOS tasks☆119Updated 3 months ago
- macOS/iOS database location scraper to extract location data☆79Updated 2 years ago