- Australia
- rcegan.xyz
- @rcegann
IR
A forensics tool to convert the data in the Windows srum (System Resource Usage Monitor) database to an xlsx spreadsheet.
PowerShell Digital Forensics & Incident Response Scripts.
A powerful data recovery utility for Linux with many advanced features based on Scott Dwyer's HDDSuperClone.
A practical resource on using open-source tools for Incident Response. This repo shares workflows, tool setups, and steps for responding quickly to security incidents.
Harness the power of Splunk for your investigations
PowerShell tools to help defenders hunt smarter, hunt harder.
A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID
Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from various disk and file formats, developed by Fox-IT (pa…
A high-speed forensic timeline engine for Windows forensic artifact CSV output built for DFIR investigators. Quickly consolidate CSV output from processed triage evidence for Eric Zimmerman (EZ Too…
This is a project for automating your KAPE process. Currently, this project takes KAPE .zips found in blob storage, turns the artefacts into super timelines, then uploads the .csv back to Blob. You…
A centralized and enhanced memory analysis platform
🐍 High-performance, multi-threaded YARA & IOC scanner