Repository navigation

#

digitalforensics

Collection of Event ID ressources useful for Digital Forensics and Incident Response

627
1 年前

A repository of DFIR-related Mind Maps geared towards the visual learners!

527
3 年前

RdpCacheStitcher is a tool that supports forensic analysts in reconstructing useful images out of RDP cache bitmaps.

C++
287
2 年前

(Sometimes partial) Python re-implementations of the technologies involved in reading various data sources in Chrome-esque applications.

Python
188
3 个月前

Digital forensic analysis tool that provides a user-friendly interface for investigating disk images.

Python
179
5 个月前

A curated list of KAPE-related resources

172
4 个月前

A repo to centralize some of the regular expressions I've found useful over the course of my DFIR career.

98
3 年前

A repo hosting the Markua content for the EZ Tools manuals hosted on Leanpub

Ruby
79
8 天前

A repo that aims to centralize a current, running list of relevant parsers/tools for known DFIR artifacts

68
9 个月前

A script that updates KAPE (using Get-KAPEUpdate.ps1) as well as EZ Tools (within .\KAPE\Modules\bin) and the ancillary files that enhance the output of those tools

PowerShell
57
2 个月前

A list of 350+ free TryHackMe rooms💻 to kick off your cybersecurity learning, organized by topics for easy exploration and practical skill-building !💀💥

56
12 小时前

Various PowerShells scripts I've made (or others have made) to automate some of the boring stuff in my everyday DFIR journey!

PowerShell
46
1 年前

A repo that contains a recursive dump from the ROOT key of every Windows Registry hive (using KAPE) from a vanilla (clean) install of every Windows OS version to compare and see what's been added with each update.

46
2 年前

A repo for centralizing ongoing research on the new Windows 10/11 DFIR artifact, EventTranscript.db.

41
3 年前

A sample VHDX file with multiple verbose examples of forensic and anti-forensics artifacts. Meant to be basic and can be expanded upon. Please add a new issue if you have an idea for something to add.

HTML
27
3 年前

Cryptocurrency Triage Tool - Identify multiple cryptocurrency addresses and transactions from various wallet applications!

Python
18
7 个月前

A repository of output using KAPE (!EZParser Module) for various publicly available forensic images!

17
1 年前