INDXRipper
timesketch
INDXRipper | timesketch | |
---|---|---|
3 | 2 | |
55 | 2,496 | |
- | 1.0% | |
6.7 | 9.0 | |
3 months ago | 1 day ago | |
Python | Python | |
MIT License | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
INDXRipper
timesketch
-
Custom DFIR
Want to put those processed plaso files in an elasticsearch instance check out Timesketch - https://github.com/google/timesketch.
- Any Timeline self hosted types of software?
What are some alternatives?
dfirtrack - DFIRTrack - The Incident Response Tracking Application
plaso - Super timeline all the things
RecuperaBit - A tool for forensic file system reconstruction.
WELA - WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)
RELY - RELY (Name composed on project members Romy, Esther, Lucille and Yassir) is a python tool developed to help a Digital Forensics Triage procedure on some Microsoft Windows devices.
TimelineJS - TimelineJS: A Storytelling Timeline built in JavaScript.
ntfsfind - An efficient tool for search files, directories, and alternate data streams directly from NTFS image files.
beagle - Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.
sleuthkit - The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file system data. The library can be incorporated into larger digital forensics tools and the command line tools can be directly used to find evidence.
hindsight - Web browser forensics for Google Chrome/Chromium
MalConfScan - Volatility plugin for extracts configuration data of known malware