Pinned Repositories
datatime
A recreation of of The SleuthKit's 'mactime' with a goal of of faster results and allowing integration of timeline data from other sources (EVT, LNK, Firewall, etc.)
easy-rsa
easy-rsa - Simple shell based CA utility
fluent-plugin-winevtx-xml-nxt
Update Fluentd Parser plugin to parse XML rendered windows event log with EventData Records and Other Features
hpacontrol
FreeBSD/Linux application for manipulating disk Host Protected Areas (out-of-date, untested)
libbinData
Internal library used for parsing binary data
libdelimText
Internal library used for parsing delimited text data
libDFXML
libNTFSUsnJrnl
Library for parsing Windows Change Journal records (aka USN Journal).
multi2mactime
Utility to massage various log/text data into The Sleuthkit's mactime/body format to conduct comparative analysis between various sources of records.
winEVTViewer
Command-line viewer for Windows Event Log Files (.EVT)
mkucenski's Repositories
mkucenski/libNTFSUsnJrnl
Library for parsing Windows Change Journal records (aka USN Journal).
mkucenski/multi2mactime
Utility to massage various log/text data into The Sleuthkit's mactime/body format to conduct comparative analysis between various sources of records.
mkucenski/winEVTViewer
Command-line viewer for Windows Event Log Files (.EVT)
mkucenski/datatime
A recreation of of The SleuthKit's 'mactime' with a goal of of faster results and allowing integration of timeline data from other sources (EVT, LNK, Firewall, etc.)
mkucenski/easy-rsa
easy-rsa - Simple shell based CA utility
mkucenski/fluent-plugin-winevtx-xml-nxt
Update Fluentd Parser plugin to parse XML rendered windows event log with EventData Records and Other Features
mkucenski/hpacontrol
FreeBSD/Linux application for manipulating disk Host Protected Areas (out-of-date, untested)
mkucenski/libbinData
Internal library used for parsing binary data
mkucenski/libdelimText
Internal library used for parsing delimited text data
mkucenski/libDFXML
mkucenski/libNTFSSecure
mkucenski/libpasswdFile
Library for parsing passwd/group files (also supports Windows via Cygwin 'mkpasswd' command).
mkucenski/libtimeUtils
mkucenski/libUSBinfo
FreeBSD/Linux library for accessing USB devices (out-of-date, untested)
mkucenski/libWinEVT
Library for accessing Windows Event Log (.EVT) files.
mkucenski/libWinLNK
Library for accessing Windows Shortcut (.LNK) files.
mkucenski/libWinMFT
mkucenski/mactimeRecover
mkucenski/misc
Misc. shared header files
mkucenski/netWhoIsLookup
Python-based "Smart" Whois client and libraries for identifying large numbers of IP addresses (out-of-date, untested)
mkucenski/networkMonitor
A set of Linux scripts for targeted collection of trap/trace or full packet network data.
mkucenski/scripts
Misc scripts
mkucenski/smartDNS
mkucenski/smartWhois
The idea here is to create an intelligent interface to the world of "WHOIS" that digs deep to get the most accurate/specific information and returns results in a normalized, JSON format.
mkucenski/usbinfo
FreeBSD/Linux application for accessing USB devices (out-of-date, untested)
mkucenski/winLNKViewer
Command-line viewer for Windows Shortcut Files (.LNK)
mkucenski/winUsnJrnlViewer