Skip to content
Change the repository type filter

All

    Repositories list

    • The Dissect module tying all other Dissect modules together. It provides a programming API and command line tools which allow easy access to various data sources inside disk images or file collections (a.k.a. targets).
      Python
      GNU Affero General Public License v3.0
      48000Updated Nov 8, 2024Nov 8, 2024
    • A forensic tool for parsing Restart Manager database
      C
      MIT License
      0100Updated Sep 11, 2024Sep 11, 2024
    • Incident Response automation scripts
      HCL
      1300Updated Aug 14, 2024Aug 14, 2024
    • Source code and examples for PassiveAggression
      C#
      MIT License
      115400Updated Jun 6, 2024Jun 6, 2024
    • The Definitive Guide To Process Cloning on Windows
      C
      MIT License
      3843702Updated Jan 3, 2024Jan 3, 2024
    • Antignis

      Public
      Source code and examples for Antignis
      C#
      Apache License 2.0
      23600Updated Oct 21, 2022Oct 21, 2022
    • Understanding the operation and limitations of Sysmon's events
      MIT License
      31300Updated Sep 15, 2022Sep 15, 2022
    • Tools and technical write-ups describing attacking techniques that rely on concealing code execution on Windows
      C
      MIT License
      2620000Updated Aug 12, 2022Aug 12, 2022
    • Jupyter Notebook
      MIT License
      1600Updated Aug 8, 2022Aug 8, 2022
    • Repository containing examples to play with access tokens and JWTs
      PowerShell
      MIT License
      3100Updated Jul 13, 2022Jul 13, 2022