Skip to content
View dwmetz's full-sized avatar
:shipit:
Omne ignotum pro magnifico
:shipit:
Omne ignotum pro magnifico

Block or report dwmetz

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

A tool for fetching DFIR and other GitHub tools.

PowerShell 22 2 Updated Mar 17, 2025

Collection of SQL, Python, and XML scripts to be used in forensic examinations

Python 4 1 Updated Mar 14, 2025

A public repository of MITRE ATT&ACK TTP mappings by BushidoUK for OSINT reports that lack a section breaking down the TTPs.

23 4 Updated Mar 20, 2025

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches

PowerShell 823 128 Updated Mar 7, 2025

Memory Forensic System on Cloud

HTML 89 7 Updated Dec 21, 2023

TRACE is a digital forensic analysis tool that provides a user-friendly interface for investigating disk images.

Python 160 21 Updated Feb 10, 2025

Awesome Security lists for SOC/CERT/CTI

YARA 907 104 Updated Mar 27, 2025

Windows Events Attack Samples

HTML 2,325 413 Updated Jan 24, 2023

A rewrite of YARA in Rust.

Rust 727 64 Updated Mar 24, 2025

Aftermath is a free macOS IR framework

Swift 498 35 Updated Nov 25, 2024

Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR

PowerShell 235 29 Updated Mar 10, 2025

ELEGANTBOUNCER is a detection tool for file-based mobile exploits.

Rust 29 2 Updated Dec 30, 2023

FLARE Obfuscated String Solver - Automatically extract obfuscated strings from malware.

Python 3,466 471 Updated Mar 10, 2025

Remote access and Antivirus Logging Database

Python 42 4 Updated Apr 28, 2024

RedEye is a visual analytic tool supporting Red & Blue Team operations

TypeScript 2,703 281 Updated Oct 20, 2023

A curated list of GPT agents for cybersecurity

5,939 659 Updated Jul 21, 2024

Parses USB connection artifacts from offline Registry hives

Python 95 13 Updated Feb 6, 2025

Masto is an OSINT tool written in python to gather intelligence on Mastodon users and instances.

Python 240 20 Updated Mar 8, 2025

CLI tools for forensic investigation of Windows artifacts

Rust 328 26 Updated Nov 1, 2024

Advanced Python Mastery (course by @dabeaz)

Python 10,877 1,850 Updated Aug 10, 2024

Several python scripts for "dump and go" type mobile forensic reports.

Python 7 1 Updated Jun 30, 2023

AVML - Acquire Volatile Memory for Linux

Rust 925 79 Updated Mar 27, 2025

Just Another broken Registry Parser (JARP)

Python 16 Updated May 23, 2024

Various PowerShells scripts I've made (or others have made) to automate some of the boring stuff in my everyday DFIR journey!

PowerShell 45 15 Updated Sep 26, 2024

A command line interface for Amazon EBS snapshots

Rust 220 27 Updated Mar 21, 2025

An easy to use PowerShell script to collect memory and disk forensics for DFIR investigations.

PowerShell 279 51 Updated Aug 23, 2024

Malware samples, analysis exercises and other interesting resources.

HTML 1,533 231 Updated Jan 13, 2024

MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR

PowerShell 608 65 Updated Mar 10, 2025

16,432 Free Yara rules created by

YARA 383 58 Updated Jun 1, 2019

Digital Forensic Investigative Scripts

Perl 75 14 Updated Mar 26, 2025
Next
Showing results