The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted drives and extracted artifacts from Windows, Linux, MacOS, and Android devices
Les fonctionnalités principales de rough007/cdqr sont : Evidence Collection, Forensics and Evidence Collection.
Les alternatives open-source à rough007/cdqr incluent : tclahr/uac. diogo-fernan/ir-rescue — A Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response. threatresponse/margaritashotgun — Remote Memory Acquisition Tool. forensicanalysis/artifactcollector — 🧭 The artifactcollector is a customizable agent to collect forensic artifacts on any Windows, macOS or Linux system. forensicartifacts/artifacts — Digital Forensics artifact repository. fox-it/acquire — acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.
A Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.
Digital Forensics artifact repository
🧭 The artifactcollector is a customizable agent to collect forensic artifacts on any Windows, macOS or Linux system
acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.