Awesome Cybersecurity Blue Team
Section: Evidence collection · Free macOS computer forensics tool.
Entry
Appears in 5 awesome lists
Free Mac OS X computer forensics tool.
Section: Evidence collection · Free macOS computer forensics tool.
Section: 事件证据搜集(取证) · 一个免费的macOS计算机取证工具
Section: OSX Evidence Collection · Free Mac OS X computer forensics tool.
Section: OS X Forensics
Section: macOS Security · Forensic analysis.
Forensic evidence collection & analysis toolkit for macOS.
A tool to uncover persistently installed software in order to generically reveal such malware. See GitHub repository too for the source code.
Plugin based forensics framework for quick mac triage that works on live machines, disk images or individual artifact files.
ir-rescue is a Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.
Command line utility (that works with or without Amazon EC2 instances) to parallelize remote memory acquisition.
A tool to view the events in Apple Endpoint Security Framework (ESF) in real time.
Modular, automated forensic triage collection framework designed to access various forensic artifacts on macOS, parse them, and present them in formats viable for analysis.
Assists incident response teams by exporting cloud artifacts from Azure/AzureAD/M365 environments in order to run a full investigation despite lacking in logs ingested by a SIEM.