unix_collector
Forensic collector
A tool for collecting forensic data from various UNIX-like systems
unix_collector is a Live Response collection script for Incident Response on UNIX-like systems using native binaries. Supports AIX, Android, ESXi, FreeBSD, Linux, macOS, NetBSD, NetScaler, OpenBSD and Solaris systems artifacts.
32 stars
2 watching
5 forks
Language: Shell
last commit: 3 months ago
Linked from 1 awesome list
blueteamcomputer-forensicsdfirdfir-automationesxiforensicsforensics-toolsfreebsdincident-responselinuxlive-responseopenbsdposixscriptsecuritysolaristriageunix
Related projects:
Repository | Description | Stars |
---|---|---|
tclahr/uac | Automates incident response data collection from various operating systems | 797 |
orlikoski/cylr | A tool that collects and preserves forensic artifacts from NTFS file systems without impacting the host system. | 645 |
pstirparo/mac4n6 | A centralized collection of forensics artifacts locations for Mac OS X and iOS. | 326 |
ownsecurity/fastir_artifacts | A tool for collecting forensic artifacts from live hosts across multiple operating systems. | 160 |
forensicanalysis/artifactcollector | A tool to extract forensic artifacts from various operating systems | 270 |
vitaly-kamluk/bitscout | A customizable tool for creating bootable disk images for remote system analysis and forensic investigations. | 462 |
omenscan/achoirx | A Go-based forensic collection and analysis tool designed for cross-platform use. | 35 |
securityjoes/forensicminer | Automates evidence collection and analysis from Windows machines using PowerShell. | 148 |
abdulrhmanalfaifi/fennec | Tool for collecting artifacts from *nix systems during incident response | 192 |
sekoialab/fastir_collector | A tool for collecting and analyzing Windows system artefacts on live systems | 506 |
flo354/iosforensic | A tool to aid in forensic analysis of iOS devices | 63 |
sekoialab/fastir_collector_linux | A tool for gathering and recording information from live Linux systems for forensic analysis | 173 |
crowdstrike/automactc | Automated collection and analysis tool for macOS forensic artifacts | 532 |
anssi-fr/dfir-o365rc | A PowerShell module for collecting and analyzing logs from Microsoft 365 and Azure systems | 249 |
diogo-fernan/ir-rescue | A tool for comprehensively collecting host forensic data during incident response and analysis. | 465 |