8000 markmckinnon (Mark McKinnon) / Starred · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content
View markmckinnon's full-sized avatar

Organizations

@cybertriage @SleuthKitLabs

Block or report markmckinnon

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authenticat…

Python 5,856 807 Updated May 22, 2025

Parses USB connection artifacts from offline Registry hives

Python 99 14 Updated Feb 6, 2025

Parser for Windows PowerShell script block logs

Python 98 16 Updated Aug 4, 2024

XstReader is an open source viewer for Microsoft Outlook’s .ost and .pst files (also those protected by unknown password). You can view and inspect all content and export messages and attachments (…

C# 166 17 Updated Jul 23, 2023

A tool collection for filtering and visualizing logon events. Designed to help answering the "Cotton Eye Joe" question (Where did you come from where did you go) in Security Incidents and Threat Hunts

JavaScript 171 11 Updated May 27, 2025
Python 12 6 Updated Mar 27, 2024

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by law enforcement or in a corporate investigation b…

Java 1,120 249 Updated Jun 9, 2025

Impacket is a collection of Python classes for working with network protocols.

Python 14,393 3,719 Updated Jun 5, 2025

A python library to parse OneNote (.one) files

Python 136 20 Updated Jul 11, 2024

Persistence by writing/reading shellcode from Event Log

C# 373 50 Updated May 27, 2022

This is a collection of analysis formulas and direct evidence that can be used by DFIR operators to rapidly search for anomalous activity.

3 Updated May 25, 2023

A purple-teamer's security research blog

SCSS 1 1 Updated Jun 7, 2023

game of active directory

PowerShell 6,471 899 Updated Mar 10, 2025

The Havoc Framework

Go 7,594 1,078 Updated Jan 23, 2025
PowerShell 2,287 370 Updated Oct 14, 2023

Ambiguous File System Partition Examples. Image B contains EXt3 and FAT32, Image C contains HFS+ and FAT32 and Image D contains Btrfs, HFS+ and FAT32.

2 Updated Mar 22, 2022

Linux Logs Events Application Program Parser

JavaScript 9 4 Updated Jul 8, 2023

Parser to process monitor file formats

Python 144 24 Updated Apr 6, 2023

Obsidian Template for Windows Forensics

JavaScript 2 Updated Feb 19, 2023
C# 470 58 Updated Nov 20, 2024

A Python + iCloud wrapper to access iPhone and Calendar data.

Python 2,690 472 Updated Oct 25, 2024

ALFA stands for Automated Audit Log Forensic Analysis for Google Workspace. You can use this tool to acquire all Google Workspace audit logs and to perform automated forensic analysis on the audit …

Python 162 25 Updated Mar 3, 2025

Web browser forensics for Google Chrome/Chromium

Python 1,194 156 Updated Apr 30, 2025

Public script from SANS FOR509 Enterprise Cloud Incident Response

Python 201 42 Updated Sep 13, 2024

📟 Archive all the chrome extensions (until Feb 4. 2019)

Python 389 71 Updated May 8, 2019

Linux Evidence Acquisition Framework

Python 118 15 Updated Sep 30, 2024
PowerShell 6 1 Updated Oct 29, 2022

A parser of Windows Defender's DetectionHistory forensic artifact, containing substantial info about quarantined files and executables.

Python 113 15 Updated Jan 26, 2022

iOS Logs, Events, And Plist Parser

Python 892 181 Updated Jun 5, 2025
Next
0