sift
Forensics setup
A suite of tools and images for building and managing digital forensics environments on AWS
SIFT
494 stars
73 watching
65 forks
last commit: 11 months ago
Linked from 1 awesome list
awscastcast-distrocliforensicsissues-onlymemory-forensicssalt-statesaltstacksanssifttimeline-analysis
Related projects:
Repository | Description | Stars |
---|---|---|
fox-it/dissect | A digital forensics framework that provides tools and parsers to analyze forensic artefacts from various disk and file formats. | 939 |
realitynet/android-forensics-references | A collection of references and resources for analyzing Android devices and applications. | 290 |
realitynet/ios-forensics-references | A curated collection of references and resources for iOS forensics investigation | 206 |
pjrinaldi/wombatforensics | A multi-threaded GUI forensic analysis tool for Linux | 48 |
google/cloud-forensics-utils | Tools for collecting and analyzing evidence from cloud platforms during incident response. | 467 |
securityjoes/forensicminer | Automates evidence collection and analysis from Windows machines using PowerShell. | 149 |
msuhanov/dfir_ntfs | A digital forensics tool for parsing and analyzing NTFS/FAT file systems. | 196 |
stuxnet999/memlabs | An educational platform for learning memory forensics through interactive CTF-style challenges | 1,670 |
diogo-fernan/ir-rescue | A tool for comprehensively collecting host forensic data during incident response and analysis. | 466 |
arxsys/dff | A framework for automating digital forensic analysis and incident response | 276 |
google/turbinia | Automates and scales digital forensic processing workflows to handle large amounts of evidence in the cloud. | 754 |
evild3ad/memprocfs-analyzer | Automated tool for forensic analysis of Windows memory dumps | 555 |
travisfoley/dfirtriage | A digital forensic tool designed to gather and analyze data from Windows-based systems in incident response scenarios. | 335 |
dfir-iris/iris-web | A collaborative platform for incident responders to share technical details during investigations | 1,091 |
invoke-ir/powerforensics | A C#-based framework for analyzing and investigating hard drive forensic data | 1,389 |