DFIRMindMaps
A repository of DFIR-related Mind Maps geared towards the visual learners! (by AndrewRathbun)
EventTranscript.db-Research
A repo for centralizing ongoing research on the new Windows 10/11 DFIR artifact, EventTranscript.db. (by AndrewRathbun)
DFIRMindMaps | EventTranscript.db-Research | |
---|---|---|
3 | 1 | |
475 | 38 | |
- | - | |
1.8 | 0.0 | |
over 1 year ago | almost 2 years ago | |
MIT License | MIT License |
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
DFIRMindMaps
Posts with mentions or reviews of DFIRMindMaps.
We have used some of these posts to build our list of alternatives
and similar projects.
EventTranscript.db-Research
Posts with mentions or reviews of EventTranscript.db-Research.
We have used some of these posts to build our list of alternatives
and similar projects.
-
New Windows 10 artifact found/explored #EventTranscript.db (1 of 5 posts)
GitHub research hub for this artifact: https://github.com/rathbuna/EventTranscript.db-Research
What are some alternatives?
When comparing DFIRMindMaps and EventTranscript.db-Research you can also consider the following projects:
awesome-incident-response - A curated list of tools for incident response
RecuperaBit - A tool for forensic file system reconstruction.
KapeFiles - This repository serves as a place for community created Targets and Modules for use with KAPE.
ccl_chrome_indexeddb - (Sometimes partial) Python re-implementations of the technologies involved in reading various data sources in Chrome-esque applications.
sysmon-config - Advanced Sysmon ATT&CK configuration focusing on Detecting the Most Techniques per Data source in MITRE ATT&CK, Provide Visibility into Forensic Artifact Events for UEBA, Detect Exploitation events with wide CVE Coverage, and Risk Scoring of CVE, UEBA, Forensic, and MITRE ATT&CK Events.