sift

Forensics setup

A suite of tools and images for building and managing digital forensics environments on AWS

SIFT

GitHub

494 stars
73 watching
65 forks
last commit: 11 months ago
Linked from 1 awesome list

awscastcast-distrocliforensicsissues-onlymemory-forensicssalt-statesaltstacksanssifttimeline-analysis

Backlinks from these awesome lists:

Related projects:

Repository Description Stars
fox-it/dissect A digital forensics framework that provides tools and parsers to analyze forensic artefacts from various disk and file formats. 939
realitynet/android-forensics-references A collection of references and resources for analyzing Android devices and applications. 290
realitynet/ios-forensics-references A curated collection of references and resources for iOS forensics investigation 206
pjrinaldi/wombatforensics A multi-threaded GUI forensic analysis tool for Linux 48
google/cloud-forensics-utils Tools for collecting and analyzing evidence from cloud platforms during incident response. 467
securityjoes/forensicminer Automates evidence collection and analysis from Windows machines using PowerShell. 149
msuhanov/dfir_ntfs A digital forensics tool for parsing and analyzing NTFS/FAT file systems. 196
stuxnet999/memlabs An educational platform for learning memory forensics through interactive CTF-style challenges 1,670
diogo-fernan/ir-rescue A tool for comprehensively collecting host forensic data during incident response and analysis. 466
arxsys/dff A framework for automating digital forensic analysis and incident response 276
google/turbinia Automates and scales digital forensic processing workflows to handle large amounts of evidence in the cloud. 754
evild3ad/memprocfs-analyzer Automated tool for forensic analysis of Windows memory dumps 555
travisfoley/dfirtriage A digital forensic tool designed to gather and analyze data from Windows-based systems in incident response scenarios. 335
dfir-iris/iris-web A collaborative platform for incident responders to share technical details during investigations 1,091
invoke-ir/powerforensics A C#-based framework for analyzing and investigating hard drive forensic data 1,389