15 results found Sort:

Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database Forensics.
Created 2021-08-06
81 commits to main branch, last one about a year ago
Collection of Event ID ressources useful for Digital Forensics and Incident Response
Created 2021-09-22
58 commits to main branch, last one 8 months ago
A repository of DFIR-related Mind Maps geared towards the visual learners!
Created 2021-08-28
128 commits to main branch, last one 2 years ago
RdpCacheStitcher is a tool that supports forensic analysts in reconstructing useful images out of RDP cache bitmaps.
Created 2021-03-18
1 commits to main branch, last one 3 years ago
A curated list of tools for incident response. With repository stars⭐ and forks🍴
Created 2022-08-04
523 commits to main branch, last one a day ago
A curated list of KAPE-related resources
Created 2021-08-23
69 commits to main branch, last one 9 months ago
(Sometimes partial) Python re-implementations of the technologies involved in reading various data sources in Chrome-esque applications.
Created 2020-09-07
178 commits to master branch, last one about a month ago
TRACE is a digital forensic analysis tool that provides a user-friendly interface for investigating disk images.
Created 2023-08-24
152 commits to master branch, last one 7 days ago
A repo to centralize some of the regular expressions I've found useful over the course of my DFIR career.
Created 2021-07-16
52 commits to main branch, last one 2 years ago
A repo hosting the Markua content for the EZ Tools manuals hosted on Leanpub
Created 2022-06-06
379 commits to main branch, last one about a year ago
A repo that aims to centralize a current, running list of relevant parsers/tools for known DFIR artifacts
Created 2023-07-01
39 commits to main branch, last one 3 months ago
A script that updates KAPE (using Get-KAPEUpdate.ps1) as well as EZ Tools (within .\KAPE\Modules\bin) and the ancillary files that enhance the output of those tools
Created 2021-07-05
117 commits to main branch, last one 15 days ago
Various PowerShells scripts I've made (or others have made) to automate some of the boring stuff in my everyday DFIR journey!
Created 2022-01-22
140 commits to main branch, last one 4 months ago
A repo that contains a recursive dump from the ROOT key of every Windows Registry hive (using KAPE) from a vanilla (clean) install of every Windows OS version to compare and see what's been added with...
Created 2021-11-23
56 commits to main branch, last one about a year ago
A repo for centralizing ongoing research on the new Windows 10/11 DFIR artifact, EventTranscript.db.
Created 2021-05-02
77 commits to main branch, last one 2 years ago