Martin Willing (evild3ad)

evild3ad

Geek Repo

Location:Hanover, Germany

Home Page:https://www.evild3ad.com

Twitter:@evild3ad79

Github PK Tool:Github PK Tool

Martin Willing's starred repositories

mvt

MVT (Mobile Verification Toolkit) helps with conducting forensics of mobile devices in order to find signs of a potential compromise.

Language:PythonLicense:NOASSERTIONStargazers:10340Issues:253Issues:305

ImportExcel

PowerShell module to import/export Excel spreadsheets, without Excel

Language:PowerShellLicense:Apache-2.0Stargazers:2460Issues:131Issues:1214

zui

Zui is a powerful desktop application for exploring and working with data. The official front-end to the Zed lake.

Language:TypeScriptLicense:NOASSERTIONStargazers:1787Issues:29Issues:1044

cli

Official Command Line Interface for the IPinfo API (IP geolocation and other types of IP data)

Language:GoLicense:Apache-2.0Stargazers:1729Issues:31Issues:95

vt-cli

VirusTotal Command Line Interface

Language:GoLicense:Apache-2.0Stargazers:802Issues:43Issues:57

evtx

A Fast (and safe) parser for the Windows XML Event Log (EVTX) format

Language:RustLicense:Apache-2.0Stargazers:660Issues:23Issues:51

MasterParser

MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs

Language:PowerShellLicense:MITStargazers:575Issues:12Issues:4

Microsoft-Extractor-Suite

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

Language:PowerShellLicense:GPL-2.0Stargazers:457Issues:19Issues:59

KnockKnock

Enumerate persistently installed software

Language:Objective-CLicense:GPL-3.0Stargazers:430Issues:15Issues:32
Language:PythonLicense:MITStargazers:404Issues:9Issues:7

Netiquette

Network Monitor

Language:Objective-CLicense:GPL-3.0Stargazers:308Issues:16Issues:14

Trawler

PowerShell script to help Incident Responders discover potential adversary persistence mechanisms.

Language:PowerShellLicense:MITStargazers:306Issues:2Issues:11

WhatsYourSign

WhatsYourSign adds a menu item to Finder.app. Simply right-, or control-click on any file to display its cryptographic signing information!

Language:Objective-CLicense:GPL-3.0Stargazers:272Issues:23Issues:23

TrueTree

A command line tool for pstree-like output on macOS with additional pid capturing capabilities

Language:SwiftLicense:NOASSERTIONStargazers:242Issues:13Issues:4

MSIdentityTools

Repository for the Microsoft Identity Tools PowerShell module which provides various tools for performing enhanced Identity administration activities.

Language:PowerShellLicense:MITStargazers:224Issues:17Issues:34

WindowsTimeline

Windows 10 (v1803+) ActivitiesCache.db parsers (SQLite, PowerShell, .EXE)

Language:PowerShellLicense:MPL-2.0Stargazers:176Issues:13Issues:2

mft

A parser for the MFT (Master File Table) format

Language:RustLicense:Apache-2.0Stargazers:125Issues:10Issues:16

OneNoteAnalyzer

A C# based tool for analysing malicious OneNote documents

Language:C#License:MITStargazers:108Issues:8Issues:2

TaskExplorer

Visually explore all running tasks (processes) ....viewing its signature status, loaded dylibs, open files, network connection, and much more.

Language:Objective-CLicense:GPL-3.0Stargazers:85Issues:7Issues:4

brimcap

Convert pcap files into richly-typed ZNG summary logs (Zeek, Suricata, and more)

Language:GoLicense:BSD-3-ClauseStargazers:74Issues:7Issues:65

Evtx_Log_Browser

Evtx Log (xml) Browser

Language:PowerShellLicense:MITStargazers:54Issues:7Issues:0

WinEDB

Windows.EDB Browser

Language:PowerShellLicense:MITStargazers:53Issues:4Issues:0

aftermath

Aftermath is a free macOS incident response framework

Language:SwiftLicense:MITStargazers:27Issues:1Issues:0

zui-insiders

Releases for the Zui Insiders app.

ESXiTri

ESXi Cyber Security Incident Response Script

Language:ShellLicense:GPL-3.0Stargazers:19Issues:2Issues:0

macos-fseventsd

A library to parse macOS FsEvents

Language:RustLicense:MITStargazers:16Issues:2Issues:1

fmd

Windows file metadata / forensic tool.

Language:RustLicense:MITStargazers:14Issues:4Issues:8

WINTri

Windows Cyber Security Incident Response Script

Language:PowerShellLicense:GPL-3.0Stargazers:6Issues:2Issues:0

LINTri

Linux Cyber Security Incident Response Script

Language:ShellLicense:GPL-3.0Stargazers:4Issues:2Issues:0

PowerTriage

PowerTriage is a tool for SOCs and CERTs to captures a plethora of live data from remote computers

Language:PowerShellLicense:GPL-3.0Stargazers:3Issues:1Issues:0