forensic
There are 107 repositories under forensic topic.
dfir-iris/iris-web
Collaborative Incident Response platform
sepinf-inc/IPED
IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by law enforcement or in a corporate investigation by private examiners.
mthcht/ThreatHunting-Keywords
Awesome list of keywords and artifacts for Threat Hunting sessions
A-YATTA/AMDH
Android Mobile Device Hardening
kacos2000/Win10
Win 10/11 related research
kacos2000/WindowsTimeline
Windows 10 (v1803+) ActivitiesCache.db parsers (SQLite, PowerShell, .EXE)
imakashsahu/Third-Eye-Final-Year-Project
Forensic Face Sketch Construction and Recognition (My B.E. Final Year Project)
Am0rphous/Awesome
Awesome collection of resources 😎 Work in progress🔥
kacos2000/Queries
SQLite queries
karthik997/Forensic_Toolkit
Major tools used for Digital Forensic Investigation, includes tools used for Image, Audio, Memory, Network and Disk Image data analysis. Helpful resource for CTF Challenges.
kh4sh3i/Malware-Analysis
A curated list of awesome malware analysis tools and resources
bitranox/fingerprint
Monitoring Registry and File Changes in Windows
mnrkbys/fjta
FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (EXT4, XFS) journals (not systemd-journald), generates timelines, and detects suspicious activities.
kacos2000/Prefetch-Browser
Browse Windows Prefetch versions: 17,23,26,30v1/2,31 & some of SuperFetch .7db/.db's
CIRCL/forensic-tools
CIRCL system forensic tools or a jumble of tools to support forensic
Srinivas11789/urlRecon
:pencil: urlRecon - Info Gathering or Recon tool for Urls -> Retrieves * Whois information of the domain * DNS Details of the domain * Server Fingerprint * IP geolocation of the server
kacos2000/Jumplist-Browser
Automatic/Custom Destinations & LNK (MS-SHLLINK) Browser
naemazam/logForenix
log Forenix 🕵️- Your Linux Forensic Artifacts Collector Tool! 🚀
ForensicRS/forensic-rs
Forensic framework to build tools that can be reused in multiple projects without changing anything
securityjoes/Crowdstrike-Deploy
The ultimate solution for remotely deploying Crowdstrike sensors quickly and discreetly on any other EDR platform.
kawaiipantsu/maltego-darknet-transforms
Maltego DarkNET Transforms - These are all PHP local transforms that i am trying to maintain and deploy in a easy way! The name may lead to think it's all about the darknet but this is not all true i made all sorts of transforms.
MrOctopus/pyWhatsUpp
A forensic tool to automatically extract as many artifacts as possible from the WhatsApp desktop/web client
guillaC/SQLiteDiskExplorer
SQLiteDiskExplorer enables you to explore, catalog, and batch extract SQLite files from disks and removable media.
kacos2000/OtherStuff
Various Topics
jnbdz/forensic-imaging-quickstarts
Forensic Imaging quickstarts!
PoCInnovation/Pool2020
💼 Pools organized for Epitech's students in 2020.
txuswashere/Digital-Forensics
Digital Forensics Essentials (DFE)
arhaxor21/Flagy
This a Complete tool contained box for Capture The Flag competition. Mostly I have inserted all the necessary tools. Some of the people have some trouble installing tools for the beginning stages.
tt-viic/AntiForensics
This script allows us to perform an execution in the memory of the device without leaving traces for forensic analysts after its execution.
enderphan94/andump
For Android Data Forensic
hanasuru/TrashParse
Simply tool for analyzing Windows Recycle.Bin files
masq/pnger
PNG file parser, for forensic/anti-forensic purposes primarily.
dfir-iris/iris-evtx-module
Example of IRIS module, handling EVTX files
Heisenberk/decode-kcpassword
Script to decode kcpassword for MacOS
HellGateCorp/DOCxNGINxFX
Deep File Forensic. Create or manipulate Wordlists out of Text Documents (ex: for BruteForcing). Save it Line by Line as a Binary .BIN File or as a usually Text File. 👁🌪🛠
moul/cryptoguess
Automatically detect and parse cryptography keys