
macos-collector
Shell script for automated collection and analysis of macOS forensic artifacts, including persistence enumeration, unified logs, and file system…

Shell script for automated collection and analysis of macOS forensic artifacts, including persistence enumeration, unified logs, and file system…

Rust-based Windows forensic toolkit for real-time MFT monitoring, event log streaming, and channel enumeration, enabling live system analysis and…

Forensic analysis of a TeamCity server compromise via CVE-2024-27198, detailing initial access, webshell persistence, and system enumeration from…

A portable C# utility for enumerating local and remote windows sessions

End-to-end SOC incident analysis and threat hunting playbook targeting Microsoft SharePoint privilege escalation (CVE-2023-29375) using SIEM logs,…

TryHackMe CTF writeup — WordPress RCE via CVE-2024-25600, crypto miner forensics, and LockBit ransomware group identification

Graph-based OSINT investigation platform for modeling entities, resolving connected information, visualizing relationships, and extracting insights…

Useful for digital forensics investigations or initial black-box pentest footprinting.

A multifaceted security tool which leverages Public GitHub REST APIs for OSINT, Forensics, Pentesting and more.

A simple, reliable and reasonably fast network capture analyzer.

A Windows userland tool to enumerate and classify ALPC ports, including PPL-protected processes.

Reverse engineering repository for malware samples from goxlr.net and related domains, focusing on stealer variants, C2 infrastructure analysis, and…

Passive hybrid fingerprinting engine — identify hosts without sending a single packet

Tool for searching pdfs withthin google and extracting pdf metadata