14 results found Sort:

Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database Forensics.
Created 2021-08-06
81 commits to main branch, last one 10 months ago
Collection of Event ID ressources useful for Digital Forensics and Incident Response
Created 2021-09-22
58 commits to main branch, last one 5 months ago
A repository of DFIR-related Mind Maps geared towards the visual learners!
Created 2021-08-28
128 commits to main branch, last one 2 years ago
RdpCacheStitcher is a tool that supports forensic analysts in reconstructing useful images out of RDP cache bitmaps.
Created 2021-03-18
1 commits to main branch, last one 3 years ago
A curated list of tools for incident response. With repository stars⭐ and forks🍴
Created 2022-08-04
523 commits to main branch, last one a day ago
A curated list of KAPE-related resources
Created 2021-08-23
69 commits to main branch, last one 6 months ago
(Sometimes partial) Python re-implementations of the technologies involved in reading various data sources in Chrome-esque applications.
Created 2020-09-07
173 commits to master branch, last one 2 months ago
TRACE is a digital forensic analysis tool that provides a user-friendly interface for investigating disk images.
Created 2023-08-24
150 commits to master branch, last one 5 days ago
A repo to centralize some of the regular expressions I've found useful over the course of my DFIR career.
Created 2021-07-16
52 commits to main branch, last one about a year ago
A repo hosting the Markua content for the EZ Tools manuals hosted on Leanpub
Created 2022-06-06
379 commits to main branch, last one about a year ago
A script that updates KAPE (using Get-KAPEUpdate.ps1) as well as EZ Tools (within .\KAPE\Modules\bin) and the ancillary files that enhance the output of those tools
Created 2021-07-05
114 commits to main branch, last one about a year ago
Various PowerShells scripts I've made (or others have made) to automate some of the boring stuff in my everyday DFIR journey!
Created 2022-01-22
140 commits to main branch, last one about a month ago
A repo that contains a recursive dump from the ROOT key of every Windows Registry hive (using KAPE) from a vanilla (clean) install of every Windows OS version to compare and see what's been added with...
Created 2021-11-23
56 commits to main branch, last one about a year ago
A repo for centralizing ongoing research on the new Windows 10/11 DFIR artifact, EventTranscript.db.
Created 2021-05-02
77 commits to main branch, last one 2 years ago