awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
AndrewRathbun avatar

AndrewRathbun/DFIRArtifactMuseum

0
View on GitHub↗
656 stars·49 forks·HTML·MIT·2 views

DFIRArtifactMuseum

DFIR Artifact Museum

Features

  • Digital Forensics - Repository of forensic artifacts for research and analysis.

Star history

Star history chart for andrewrathbun/dfirartifactmuseumStar history chart for andrewrathbun/dfirartifactmuseum

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Open-source alternatives to DFIRArtifactMuseum

Similar open-source projects, ranked by how many features they share with DFIRArtifactMuseum.
  • a0rtega/pafisha0rtega avatar

    a0rtega/pafish

    3,920View on GitHub↗

    Pafish is an anti-analysis sandbox detector and virtualization environment tester. It serves as a diagnostic utility to identify if a system is running inside a virtual machine or a malware analysis sandbox by executing common anti-analysis techniques. The tool validates the effectiveness of various evasion methods and supports research into sandbox detection. It tests whether a target system can be recognized as a virtualized environment to help improve the stealth of malware analysis environments. Detection is achieved through a variety of behavioral checks, including hardware artifact ana

    C
    View on GitHub↗3,920
  • ahmedkhlief/apt-hunterahmedkhlief avatar

    ahmedkhlief/APT-Hunter

    1,408View on GitHub↗

    APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the sea of windows event logs to decrease the time to uncover suspicious activity

    Python
    View on GitHub↗1,408
  • andrewrathbun/dfirmindmapsAndrewRathbun avatar

    AndrewRathbun/DFIRMindMaps

    549View on GitHub↗

    This is a repository to centralize DFIR-related Mind Maps created with any Mind Mapping suites. The main point of this repo is to not only provide the Mind Maps for various DFIR Tools & Artifacts, but provide the source of the Mind Maps so others can use, improve, or modify how they see fit for…

    View on GitHub↗549
  • 504ensicslabs/lime504ensicsLabs avatar

    504ensicsLabs/LiME

    1,995View on GitHub↗

    LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices, such as those powered by Android. The tool supports acquiring memory either to the file system of the device or over the network. LiME is unique in that it is the first tool that allows full memory captures from Android devices. It also minimizes its interaction between user and kernel space processes during acquisition, which allows it to produce memory captures that are more forensically sound than those of other tools designed for Linux memory acquisitio

    C
    View on GitHub↗1,995
See all 30 alternatives to DFIRArtifactMuseum→

Frequently asked questions

What does andrewrathbun/dfirartifactmuseum do?

DFIR Artifact Museum

What are the main features of andrewrathbun/dfirartifactmuseum?

The main features of andrewrathbun/dfirartifactmuseum are: Digital Forensics.

What are some open-source alternatives to andrewrathbun/dfirartifactmuseum?

Open-source alternatives to andrewrathbun/dfirartifactmuseum include: a0rtega/pafish — Pafish is an anti-analysis sandbox detector and virtualization environment tester. It serves as a diagnostic utility… ahmedkhlief/apt-hunter — APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT… andrewrathbun/dfirmindmaps — This is a repository to centralize DFIR-related Mind Maps created with any Mind Mapping suites. The main point of this… anssi-fr/adtimeline — 1. The ADTimeline PowerShell script 1. Description 2. Prerequisites 3. Usage 4. Files generated 5. Custom groups 2.… arsolutioner/extensionhound — A security analysis tool that identifies DNS queries made by browser extensions, empowering security teams to detect… 504ensicslabs/lime — LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and…