Skip to content
#

forensic-analysis

Here are 214 public repositories matching this topic...

NBTempoW V. 2.1 is a forensic tool for making timelines from block devices image files (raw, ewf,physicaldrive, etc.). It uses TSK (The Sleuthkit) and it has been developed with Lazarus V. 1.6.2 ( Delphi compatible cross-platform IDE for Rapid Application Development). It runs only in Windows. If the device image file is splitted, you can select…

  • Updated Mar 29, 2017
  • Pascal

This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to extract juicy information such as LAPS passwords or any sensitive information on the screen. Blue Team member can reconstruct PNG files to see what an attacker did on a compromised host. It is extremely u…

  • Updated Aug 4, 2018
  • Python

Improve this page

Add a description, image, and links to the forensic-analysis topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the forensic-analysis topic, visit your repo's landing page and select "manage topics."

Learn more