Hoarder

Artifact collector

A tool to collect and parse Windows artifacts from disk images or live machines.

This script is made to collect the most valiable artifacts for foreniscs or incident reponse investigation rather than imaging the whole har drive.

GitHub

194 stars
10 watching
19 forks
Language: Python
last commit: about 4 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
forensicanalysis/artifactcollector A tool to extract forensic artifacts from various operating systems 271
omenscan/achoir A scripting framework to simplify the process of gathering forensic artifacts from Windows devices. 184
fox-it/acquire A tool for gathering forensic artifacts from disk images or live systems into a lightweight container. 92
pstirparo/mac4n6 A centralized collection of forensics artifacts locations for Mac OS X and iOS. 326
forensicartifacts/artifacts A repository of machine-readable digital forensic artifacts in YAML format, validated by Python code. 1,071
sekoialab/fastir_collector A tool for collecting and analyzing Windows system artefacts on live systems 507
ownsecurity/fastir_artifacts A tool for collecting forensic artifacts from live hosts across multiple operating systems. 160
abdulrhmanalfaifi/fennec Tool for collecting artifacts from *nix systems during incident response 195
silv3rhorn/artifactextractor Extracts Windows artifacts from images and virtual machines 66
gems-uff/noworkflow Automates the tracking of how data is produced and transformed in scientific experiments. 122
highmeh/lure A tool that automates the process of gathering email addresses from various sources for use in phishing or reconnaissance purposes. 159
hurricanelabs/machinae A tool for collecting security-related data from public sites and feeds. 505
psgumshoe/psgumshoe A Windows PowerShell module designed to collect OS and domain artifacts for forensic analysis and incident response. 253
op7ic/unix_collector A script designed to automatically collect various system artifacts and data from Unix-like systems without the need for manual intervention or external dependencies. 33
invoke-ir/ace A suite of tools for automating data collection and enrichment across multiple operating systems. 322