Hoarder
Artifact collector
A tool to collect and parse Windows artifacts from disk images or live machines.
This script is made to collect the most valiable artifacts for foreniscs or incident reponse investigation rather than imaging the whole har drive.
193 stars
10 watching
19 forks
Language: Python
last commit: about 4 years ago
Linked from 1 awesome list
Related projects:
Repository | Description | Stars |
---|---|---|
forensicanalysis/artifactcollector | A tool to extract forensic artifacts from various operating systems | 270 |
omenscan/achoir | A scripting framework to simplify the process of gathering forensic artifacts from Windows devices. | 183 |
fox-it/acquire | A tool to quickly gather forensic artifacts from disk images or live systems into a lightweight container. | 91 |
pstirparo/mac4n6 | A centralized collection of forensics artifacts locations for Mac OS X and iOS. | 326 |
forensicartifacts/artifacts | A repository of machine-readable digital forensic artifacts in YAML format, validated by Python code. | 1,062 |
sekoialab/fastir_collector | A tool for collecting and analyzing Windows system artefacts on live systems | 506 |
ownsecurity/fastir_artifacts | A tool for collecting forensic artifacts from live hosts across multiple operating systems. | 160 |
abdulrhmanalfaifi/fennec | Tool for collecting artifacts from *nix systems during incident response | 192 |
silv3rhorn/artifactextractor | Extracts Windows artifacts from images and virtual machines | 65 |
gems-uff/noworkflow | Automates the tracking of how data is produced and transformed in scientific experiments. | 120 |
highmeh/lure | A tool that automates the process of gathering email addresses from various sources for use in phishing or reconnaissance purposes. | 158 |
hurricanelabs/machinae | A tool for collecting security-related data from public sites and feeds. | 504 |
psgumshoe/psgumshoe | A Windows PowerShell module designed to collect OS and domain artifacts for forensic analysis and incident response. | 251 |
op7ic/unix_collector | A tool for collecting forensic data from various UNIX-like systems | 32 |
invoke-ir/ace | A suite of tools for automating data collection and enrichment across multiple operating systems. | 322 |