dff

Forensic tool

A framework for automating digital forensic analysis and incident response

DFF (Digital Forensics Framework) is a Forensics Framework coming with command line and graphical interfaces. DFF can be used to investigate hard drives and volatile memory and create reports about user and system activities.

GitHub

276 stars
29 watching
56 forks
Language: Python
last commit: over 6 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
msuhanov/dfir_ntfsA digital forensics tool for parsing and analyzing NTFS/FAT file systems.196
travisfoley/dfirtriageA digital forensic tool designed to gather and analyze data from Windows-based systems in incident response scenarios.335
teamdfir/siftA suite of tools and images for building and managing digital forensics environments on AWS494
sshock/afflibv3A comprehensive file format and tool suite for storing and analyzing digital evidence in forensic investigations.81
fox-it/dissectA digital forensics framework that provides tools and parsers to analyze forensic artefacts from various disk and file formats.939
coinbase/dexterA forensics acquisition framework for secure and extensible digital evidence collection and analysis.126
anssi-fr/dfir4vsphereA PowerShell module for collecting logs and forensics data from VMware vSphere environments.143
diogo-fernan/ir-rescueA tool for comprehensively collecting host forensic data during incident response and analysis.466
dfir-iris/iris-webA collaborative platform for incident responders to share technical details during investigations1,091
dissectmalware/officeforensictoolsA Python-based collection of tools for gathering forensic information from Office documents26
netflix-skunkworks/diffyAn incident response tool that helps digital forensics teams analyze and prioritize suspicious hosts in cloud environments635
google/turbiniaAutomates and scales digital forensic processing workflows to handle large amounts of evidence in the cloud.754
dolevf/graphw00fA tool to identify and analyze the underlying technology behind a GraphQL endpoint.587
homeport/dyffA tool that compares two versions of files and shows the differences.1,338
ydkhatri/mac_aptA digital forensics tool for analyzing macOS and iOS systems790