Ben Smith's repositories

elrond

Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.

Language:PythonLicense:MITStargazers:31Issues:1Issues:25

MITRESaw

Obtain actionable identifiers from MITRE ATT&CK framework based on provided parameters.

Language:PythonLicense:MITStargazers:4Issues:2Issues:5

oscybershop

A simple collection of free and affordable cyber security resources...

Language:HTMLLicense:MITStargazers:2Issues:2Issues:0

bruce

Python script for outputting PCAPs as JSON as well as extracting attachments within the traffic stream

Language:PythonLicense:MITStargazers:1Issues:1Issues:0

evt2json

Convert EVT and EVTX files to JSON for easier SIEM tool ingestion

Language:PythonLicense:MITStargazers:1Issues:1Issues:0

gandalf

Collection of acquisition scripts for collecting digital forensic artefacts

Language:PythonLicense:MITStargazers:1Issues:1Issues:5

apfs-fuse

FUSE driver for APFS (Apple File System)

Language:C++License:GPL-2.0Stargazers:0Issues:0Issues:0

avml

AVML - Acquire Volatile Memory for Linux

Language:RustLicense:MITStargazers:0Issues:0Issues:0

Best-README-Template

An awesome README template to jumpstart your projects!

License:MITStargazers:0Issues:0Issues:0

dwarf2json

convert ELF/DWARF symbol and type information into vol3's intermediate JSON

Language:GoLicense:NOASSERTIONStargazers:0Issues:0Issues:0

etl-parser

Event Trace Log file parser in pure Python

Language:PythonLicense:Apache-2.0Stargazers:0Issues:0Issues:0

KStrike

Stand-alone parser for User Access Logging from Server 2012 and newer systems

Language:PythonLicense:NOASSERTIONStargazers:0Issues:0Issues:0

lme

Logging Made Easy

Language:ShellLicense:Apache-2.0Stargazers:0Issues:0Issues:0

LOOBins

Living Off the Orchard: macOS Binaries (LOOBins) is designed to provide detailed information on various built-in macOS binaries and how they can be used by threat actors for malicious purposes.

Language:PythonLicense:GPL-3.0Stargazers:0Issues:0Issues:0

markdown-snippets

:clipboard: Markdown snippets for your documentation files.

License:UnlicenseStargazers:0Issues:0Issues:0

profiles

Volatility profiles for Linux and Mac OS X

Stargazers:0Issues:0Issues:0

python-evtx

Pure Python parser for recent Windows Event Log files (.evtx)

Language:PythonLicense:Apache-2.0Stargazers:0Issues:0Issues:0

rdap

RDAP command line client

Language:GoLicense:MITStargazers:0Issues:0Issues:0

srum-dump

A forensics tool to convert the data in the Windows srum (System Resource Usage Monitor) database to an xlsx spreadsheet.

Language:PythonStargazers:0Issues:0Issues:0

template

Template python repository

License:MITStargazers:0Issues:0Issues:0

theredactor

Python script to redact Personally Identifiable Information from selection of common files.

Language:PythonLicense:MITStargazers:0Issues:0Issues:0

volatility

An advanced memory forensics framework

License:GPL-2.0Stargazers:0Issues:0Issues:0

Windows-Symbol-Tables

Windows symbol tables for Volatility 3

Language:PythonStargazers:0Issues:0Issues:0
Language:PythonStargazers:0Issues:0Issues:0