The Wayback Machine - https://web.archive.org/web/20211018194454/https://github.com/topics/forensic-analysis
Skip to content
#

forensic-analysis

Here are 134 public repositories matching this topic...

This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to extract juicy information such as LAPS passwords or any sensitive information on the screen. Blue Team member can reconstruct PNG files to see what an attacker did on a compromised host. It is extremely useful for a forensics team to extract timestamps after an attack on a host to collect evidences and perform further analysis.
  • Updated Aug 4, 2018
  • Python

UAC (Unix-like Artifacts Collector) is a Live Response collection tool for Incident Reponse that makes use of built-in tools to automate the collection of Unix-like systems artifacts. Supported systems: AIX, FreeBSD, Linux, macOS, NetBSD, Netscaler, OpenBSD and Solaris.
  • Updated Sep 4, 2021
  • Shell
Judge-Jury-and-Executable

A file system forensics analysis scanner and threat hunting tool. Scans file systems at the MFT and OS level and stores data in SQL, SQLite or CSV. Threats and data can be probed harnessing the power and syntax of SQL.
  • Updated Sep 17, 2021
  • C

Improve this page

Add a description, image, and links to the forensic-analysis topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the forensic-analysis topic, visit your repo's landing page and select "manage topics."

Learn more