
sorry-ransomware-analysis
Sorry ransomware (.sorry) IOCs, YARA rules and forensic analysis - CVE-2026-41940 cPanel campaign
cryptographydigital-forensicsforensics+4
6

Sorry ransomware (.sorry) IOCs, YARA rules and forensic analysis - CVE-2026-41940 cPanel campaign

Read-only Windows forensic scanner for software traces — persistence, execution artifacts (Prefetch, Shimcache, BAM), user activity and Ghost Tasks…

Proof-of-concept Velociraptor artifacts pack to showcase a remote Veeam forensics pipeline.

A Repository to Track Anti-Forensic Techniques

Lack of argument sanitization leading to password leakage in Ghostscript PDF versions up to 10.05.0.

Extract all forensic interesting information of Firefox, Iceweasel and Seamonkey browsers

This toolkit aims to help forensicators perform different kinds of acquisitions on iOS devices