pyartifacts
The pyartifacts project provides a Python library for processing forensic artifact definition files.
Installation
Python installation can be easily done via pip:
pip install pyartifacts
Usage
from pyartifacts.registry import Registry
if __name__ == '__main__':
registry = Registry()
registry.read_folder("test/artifacts/valid")
print(registry)
Contact
For feedback, questions and discussions you can use the Open Source DFIR Slack.
Acknowledgment
The development of this software was partially sponsored by Siemens CERT, but is not an official Siemens product.