
kirjuri
Kirjuri is a web application for managing cases and physical forensic evidence items.

Kirjuri is a web application for managing cases and physical forensic evidence items.

Tracking history of USB events on GNU/Linux

Stenographer is a packet capture solution which aims to quickly spool all packets to disk, then provide simple, fast access to subsets of those…

HASSH is a network fingerprinting standard which can be used to identify specific Client and Server SSH implementations. The fingerprints can be…

A network sniffer that logs all DNS server replies for use in a passive DNS setup

Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders

Regipy is an os independent python library for parsing offline registry hives

Digital forensic acquisition tool for Windows based incident response.

Enumerate various traits from Windows processes as an aid to threat hunting

PowerShell script helping Incident Responders discover potential adversary persistence mechanisms.

Hashes for vulnerable LOG4J versions




Detection Script for MongoBleed Exploitation


This is a repo for fetching Applocker event log by parsing the win-event log
