Skip to content
View rcegan's full-sized avatar

Block or report rcegan

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

IR

13 repositories

MemProcFS

C 4,037 511 Updated Mar 2, 2026

A forensics tool to convert the data in the Windows srum (System Resource Usage Monitor) database to an xlsx spreadsheet.

Python 736 123 Updated Jun 5, 2025

PowerShell Digital Forensics & Incident Response Scripts.

PowerShell 775 110 Updated Jan 14, 2026

A powerful data recovery utility for Linux with many advanced features based on Scott Dwyer's HDDSuperClone.

C 223 11 Updated Mar 2, 2026

A practical resource on using open-source tools for Incident Response. This repo shares workflows, tool setups, and steps for responding quickly to security incidents.

PowerShell 38 4 Updated Nov 4, 2024

Harness the power of Splunk for your investigations

Dockerfile 157 17 Updated Oct 11, 2025

PowerShell tools to help defenders hunt smarter, hunt harder.

PowerShell 475 56 Updated Oct 29, 2025

A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID

PowerShell 578 66 Updated Dec 6, 2025

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from various disk and file formats, developed by Fox-IT (pa…

1,092 80 Updated Feb 25, 2026

A high-speed forensic timeline engine for Windows forensic artifact CSV output built for DFIR investigators. Quickly consolidate CSV output from processed triage evidence for Eric Zimmerman (EZ Too…

C# 309 33 Updated Feb 26, 2026

This is a project for automating your KAPE process. Currently, this project takes KAPE .zips found in blob storage, turns the artefacts into super timelines, then uploads the .csv back to Blob. You…

Python 6 Updated Mar 27, 2024

A centralized and enhanced memory analysis platform

TypeScript 523 53 Updated Mar 10, 2026

🐍 High-performance, multi-threaded YARA & IOC scanner

Rust 277 21 Updated Mar 11, 2026