Quick and dirty method do data exfil binary files in the form of hex strings to GCP's cloud logging easily bypassing most DLP
-
Updated
Mar 28, 2023 - Go
Quick and dirty method do data exfil binary files in the form of hex strings to GCP's cloud logging easily bypassing most DLP
Cross Platform (Go app) - to parse Windows Tasks UTF-16 le ecoded xml files to csv or onscreen tab
Mantis is a forensics tool in Go leveraging utilities from Sysinternals and Nirsoft for system analysis and investigation. Automates systems logs retrieval, network connections, process activity analysis, autoruns configurations and more.
An interactive shell for The Sleuth Kit's fls tool.
Forensic Artifacts Collecting Toolset
Go script that finds a matching hash or a diff of a target hash in a directory.
Fast Incident Response client library written in Go
Access Expert Witness Format (ewf/E01/L01) files using Golang
Provides a multi-platform Graphical User Interface for hashlookup
Helping Incident Responders hunt for potential persistence mechanisms on UNIX-based systems.
Live system forensic collector
urlyzer is a URL parsing analysis tool.
A collection of algorithms for comparing the similarity of images using perceptual hashes
🕵️ Process and show forensic artifacts (e.g. eventlogs, usb devices, network devices...) in forensicstores
Add a description, image, and links to the dfir topic page so that developers can more easily learn about it.
To associate your repository with the dfir topic, visit your repo's landing page and select "manage topics."