
AIL-framework
AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project

Advanced framework for extracting digital artifacts from volatile memory (RAM) samples, enabling deep forensic analysis of system runtime state…

Collects macOS and iOS artifacts to build timelines of network activity, cross-device identity, and physical location correlation for reconnaissance…

High-performance OSINT/CTI framework for automated identity pivoting and risk analysis across 120+ sources.

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

Remote live forensics and incident response framework with Python agent for collecting forensic data from endpoints, including memory, disk, and…

Dshell is a network forensic analysis framework.

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from…

Tool and framework for securely reading untrusted USB mass storage devices.

Automated forensic analysis tool for Google Workspace audit logs. Acquires all log types, maps events to MITRE ATT&CK Cloud Framework, and identifies…

Swift-based macOS incident response framework for collecting and analyzing host artifacts, including filesystem timestamps, browser data, unified…

Open-source forensics framework for analyzing Industrial PLC metadata and project files. Scans for suspicious artifacts in ICS environments to…

Incident Response Forensic Framework

Labtainers: A Docker-based cyber lab framework


Process heap analysis framework - Windows/Linux - record type inference and forensics

A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.

Framework for hashing declared permissions in Chromium extensions and APKs, enabling clustering, hunting, and pivoting across potentially malicious…