ydkhatri / mac_apt
macOS (& ios) Artifact Parsing Tool
☆848Updated last week
Alternatives and similar repositories for mac_apt
Users that are interested in mac_apt are comparing it to the libraries listed below
Sorting:
- Apple Pattern of Life Lazy Output'er☆584Updated last year
- AutoMacTC: Automated Mac Forensic Triage Collector☆540Updated 3 years ago
- Parser for OSX/iOS FSEvents Logs☆251Updated 5 months ago
- Scripts to parse various iOS sysdiagnose logs. Based upon the forensic research of Mattia Epifani, Heather Mahalik and Cheeky4n6monkey.☆192Updated 2 years ago
- Collection of forensics artifacts location for Mac OS X and iOS☆329Updated 3 years ago
- Scripts to process macOS forensic artifacts☆192Updated 9 months ago
- iOS Logs, Events, And Plist Parser☆869Updated this week
- ☆243Updated last month
- A command line tool for pstree-like output on macOS with additional pid capturing capabilities☆254Updated 8 months ago
- A parser for Unified logging tracev3 files☆86Updated last year
- Aftermath is a free macOS IR framework☆508Updated 5 months ago
- Process Monitor Library (based on Apple's new Endpoint Security Framework)☆455Updated last year
- Presentation Archives for my macOS and iOS Related Research☆252Updated last month
- Digital Forensics artifact repository☆1,112Updated 4 months ago
- A forensic evidence collection & analysis toolkit for OS X☆1,886Updated 5 years ago
- Android Logs Events And Protobuf Parser☆609Updated last week
- A framework for orchestrating forensic collection, processing and data export☆313Updated 2 weeks ago
- Forensic Artifact Collection Tool for macOS☆110Updated 7 months ago
- A collection of OSX and iOS security resources☆761Updated last year
- Forensic toolkit for iOS sysdiagnose feature☆200Updated last week
- Super timeline all the things☆1,840Updated 2 months ago
- Red Canary Mac Monitor is an advanced, stand-alone system monitoring tool tailor-made for macOS security research. Beginning with Endpoin…☆1,040Updated 10 months ago
- File recovery for APFS☆161Updated 3 years ago
- Collection of SQL query templates for digital forensics use by platform and application.☆104Updated 4 years ago
- 🧭 The artifactcollector is a customizable agent to collect forensic artifacts on any Windows, macOS or Linux system☆286Updated last week
- Crescendo is a swift based, real time event viewer for macOS. It utilizes Apple's Endpoint Security Framework.☆1,046Updated 3 years ago
- Scripts and code referenced in CrowdStrike blog posts☆331Updated 5 years ago
- A curated list of iOS Forensics References, organized by folder with specific references (links to blog post, research paper, articles, a…☆218Updated last year
- Mac OS X Memory Analysis Toolkit☆168Updated 8 years ago
- Web browser forensics for Google Chrome/Chromium☆1,176Updated 2 weeks ago