Logstash
hindsight
Our great sponsors
Logstash | hindsight | |
---|---|---|
5 | 8 | |
13,999 | 1,014 | |
0.6% | - | |
9.6 | 5.3 | |
6 days ago | about 1 month ago | |
Java | Python | |
GNU General Public License v3.0 or later | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Logstash
-
Simple way to centralize my server logs?
There are probably too many to chose from. Logstash, Promtail, Vector, Filebeat, FluentD, Logagent and probably many more
-
Help with parsing log in logstash into uniqe lines
https://github.com/elastic/logstash/issues/1650 See if this works.
-
Looking for open source projects that use data pipelines and big data flows
Is logstash the kind of project you are looking for? https://github.com/elastic/logstash
-
Top Observability tools for DevOps Engineers and SREs
Logstash is completely free and the source code is available freely on GitHub.
-
Disable Console Output in Logstash 7.10
What log level are you set to in logstash.yml? The default log level is "info" which is pretty chatty. I set mine to "error". See https://github.com/elastic/logstash/blob/master/config/logstash.yml#L248.
hindsight
-
Saving cached telegram messages from Edge
I guess it would work like any Chromium cache so first make a backup of your data %AppData%\Local\Microsoft\Edge\User Data\Default\ and use https://github.com/obsidianforensics/hindsight Telegram is encrypted so I don't know how this is going to be readable.
- Browser Login Data Dates Earlier than Laptop Date
- Lost/Erased Monsters in Vault Recovered - Chrome - GiffyGlyph's Monster Maker
-
QQT Browser History in CS for Detections at LEAST !?!? WIP ;)
Invoke-WebRequest -Uri "https://github.com/obsidianforensics/hindsight/releases/download/v2021.12/hindsight.exe" -OutFile "C:\windows\Temp\ftech_temp\hindsight.exe"
-
Forensic Tools for Browser Data
Try hindsight https://github.com/obsidianforensics/hindsight. If it fails due to the file being damaged try sqlitebrowser https://sqlitebrowser.org/dl/. If all else fails strings it!
- Forensic script ideas?
-
Evidence/ artifact for clearing chrome history?
There is a tool called Hightsight which used to pull this data out. Article about using it here. Although the emphasis is on used to pull this out. I haven't used that technique in years and I suspect it might not work on modern Chrome.
-
Help reading Chrome History file from 2010
Hindsight (https://github.com/obsidianforensics/hindsight) should be able to parse every version of Chrome, including the early ones (2009/2010).
What are some alternatives?
Logback - The reliable, generic, fast and flexible logging framework for Java.
timesketch - Collaborative forensic timeline analysis
Apache Log4j 2 - Apache Log4j 2 is a versatile, feature-rich, efficient logging API and backend for Java.
Sending your docker logs - Sending logs from docker containers to Logit.io
nifi - Apache NiFi
RELY - RELY (Name composed on project members Romy, Esther, Lucille and Yassir) is a python tool developed to help a Digital Forensics Triage procedure on some Microsoft Windows devices.
graylog - Free and open log management
chrome_password_grabber - Get unencrypted 'Saved Password' from Google Chrome
Flume - Mirror of Apache Flume
woanware.github.io
Logbook - An extensible Java library for HTTP request and response logging
SLF4J - Simple Logging Facade for Java