awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectAboutHow we rankPressMCP server
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to dogoncouch/logdissect

Open-source alternatives to Logdissect

30 open-source projects similar to dogoncouch/logdissect, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Logdissect alternative.

  • wagga40/zircolitewagga40 avatar

    wagga40/Zircolite

    782View on GitHub↗
    Pythonauditddetectionevtx
    View on GitHub↗782
  • yamato-security/hayabusaYamato-Security avatar

    Yamato-Security/hayabusa

    3,027View on GitHub↗

    Hayabusa is a Windows event log analyzer, threat hunting tool, and forensic timeline generator. It functions as a detection engine that applies threat patterns to logs to identify suspicious behavior and security threats. The project distinguishes itself through the ability to synchronize detection rules from remote repositories and tune risk levels to prioritize critical alerts. It also provides specialized forensic capabilities, such as extracting event log data into chronological records for incident response investigations. The tool's broader capabilities include security log enrichment

    Rustattackcybersecuritydetection
    View on GitHub↗3,027
  • ahmedkhlief/apt-hunterahmedkhlief avatar

    ahmedkhlief/APT-Hunter

    1,408View on GitHub↗

    APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the sea of windows event logs to decrease the time to uncover suspicious activity

    Python
    View on GitHub↗1,408
  • jpcertcc/logontracerJPCERTCC avatar

    JPCERTCC/LogonTracer

    3,136View on GitHub↗

    LogonTracer is a security auditing tool designed for logon analysis and forensic log auditing. It functions as a dockerized security auditor that utilizes a security event graph database to map account names and network addresses, allowing for the visualization of complex system compromise patterns and authentication paths. The system features a Sigma detection engine that scans imported event logs against standardized rule sets to identify known malicious activity. It also includes an anomalous behavior detector that applies statistical analysis, graph algorithms, and hidden Markov models to

    Pythonactive-directoryblueteamdfir
    View on GitHub↗3,136

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • yamato-security/welaYamato-Security avatar

    Yamato-Security/WELA

    102View on GitHub↗

    WELA (Windows Event Log Analyzer, ゑ羅) is a tool for auditing Windows event log settings. Windows event logs are a vital source of information for Digital Forensics and Incident Response (DFIR), providing visibility into system activity and security events.

    PowerShell
    View on GitHub↗102
  • actuallymentor/wintertime-mac-background-freezerA

    actuallymentor/wintertime-mac-background-freezer

    0View on GitHub↗
    View on GitHub↗0
  • actionschnitzel/pigro-aid-actionschnitzel avatar

    actionschnitzel/PiGro-Aid-

    46View on GitHub↗

    With a clear and graphically appealing GUI you can access the system deeply, overclock the Pi or replace the entire desktop environment. Everything you need to use the Pi as a desktop computer. PiGro does many commands that have to be entered via the terminal with one or two clicks of a button.

    Python
    View on GitHub↗46
  • 504ensicslabs/lime504ensicsLabs avatar

    504ensicsLabs/LiME

    1,995View on GitHub↗

    LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices, such as those powered by Android. The tool supports acquiring memory either to the file system of the device or over the network. LiME is unique in that it is the first tool that allows full memory captures from Android devices. It also minimizes its interaction between user and kernel space processes during acquisition, which allows it to produce memory captures that are more forensically sound than those of other tools designed for Linux memory acquisitio

    C
    View on GitHub↗1,995
  • airbnb/streamalertairbnb avatar

    airbnb/streamalert

    2,885View on GitHub↗

    StreamAlert is a serverless, realtime data analysis framework which empowers you to ingest, analyze, and alert on data from any environment, using datasources and alerting logic you define.

    Python
    View on GitHub↗2,885
  • ahmetcanarslan/hiddenalarmrevealerA

    AhmetCanArslan/HiddenAlarmRevealer

    0View on GitHub↗
    View on GitHub↗0
  • ajeetdsouza/zoxideajeetdsouza avatar

    ajeetdsouza/zoxide

    37,467View on GitHub↗

    Zoxide is a terminal utility designed to accelerate filesystem navigation by learning user habits. It functions as a command-line navigation tool that allows users to jump to frequently accessed directories using partial names rather than typing out full file paths. The tool maintains a persistent, atomic file-based database that records navigation history, enabling rapid lookups and safe updates across multiple shell sessions. The project distinguishes itself through a frecency-based ranking algorithm, which calculates directory relevance by combining access frequency with temporal decay. Th

    Rustautojumpbashcli
    View on GitHub↗37,467
  • akhileshthorat/micropython-esp32-otaAkhileshThorat avatar

    AkhileshThorat/Micropython-ESP32-OTA

    16View on GitHub↗

    Example code for updating firmware over the air

    Python
    View on GitHub↗16
  • alichtman/strongholdalichtman avatar

    alichtman/stronghold

    1,190View on GitHub↗

    Easily configure macOS security settings from the terminal.

    Pythoncommand-linecommand-line-toolhardening
    View on GitHub↗1,190
  • allinurl/goaccessallinurl avatar

    allinurl/goaccess

    20,242View on GitHub↗

    This project is a terminal-based log analyzer and real-time traffic monitoring system designed for web server environments. It processes raw server access logs to generate structured statistical insights, providing visibility into visitor behavior, bandwidth usage, and request latency. The tool functions as a high-performance utility capable of handling large-scale datasets through multi-threaded parsing and memory-efficient data structures. The software distinguishes itself by offering both an interactive terminal interface and a web-based dashboard that updates in real-time via WebSocket st

    Canalyticsapachec
    View on GitHub↗20,242
  • a0rtega/pafisha0rtega avatar

    a0rtega/pafish

    3,920View on GitHub↗

    Pafish is an anti-analysis sandbox detector and virtualization environment tester. It serves as a diagnostic utility to identify if a system is running inside a virtual machine or a malware analysis sandbox by executing common anti-analysis techniques. The tool validates the effectiveness of various evasion methods and supports research into sandbox detection. It tests whether a target system can be recognized as a virtualized environment to help improve the stealth of malware analysis environments. Detection is achieved through a variety of behavioral checks, including hardware artifact ana

    C
    View on GitHub↗3,920
  • andrewrathbun/dfirmindmapsAndrewRathbun avatar

    AndrewRathbun/DFIRMindMaps

    549View on GitHub↗

    This is a repository to centralize DFIR-related Mind Maps created with any Mind Mapping suites. The main point of this repo is to not only provide the Mind Maps for various DFIR Tools & Artifacts, but provide the source of the Mind Maps so others can use, improve, or modify how they see fit for…

    View on GitHub↗549
  • andrewrathbun/dfirartifactmuseumAndrewRathbun avatar

    AndrewRathbun/DFIRArtifactMuseum

    656View on GitHub↗

    DFIR Artifact Museum

    HTML
    View on GitHub↗656
  • amrdeveloper/gqlamrdeveloper avatar

    amrdeveloper/gql

    3,501View on GitHub↗

    GitQL is a extensible SQL-like query language and SDK to perform queries on various data sources such .git files with supports of most of SQL features such as grouping, ordering and aggregation and window functions and allow customization like user-defined types and functions

    Rust
    View on GitHub↗3,501
  • androidexpert35/appboosterA

    androidexpert35/AppBooster

    0View on GitHub↗
    View on GitHub↗0
  • anssi-fr/adtimelineANSSI-FR avatar

    ANSSI-FR/ADTimeline

    525View on GitHub↗

    1. The ADTimeline PowerShell script 1. Description 2. Prerequisites 3. Usage 4. Files generated 5. Custom groups 2. The ADTimeline App for Splunk 1. Description 2. Sourcetypes 3. AD General information dashboards 4. AD threat hunting dashboards 5. Enhance your traditional event logs threat…

    PowerShell
    View on GitHub↗525
  • anthonya1999/goodnightanthonya1999 avatar

    anthonya1999/GoodNight

    551View on GitHub↗

    The first non-jailbroken iOS (and macOS) application to adjust the screen temperature, brightness, and color!

    Objective-C
    View on GitHub↗551
  • anzz1/cpuidanzz1 avatar

    anzz1/cpuid

    2View on GitHub↗

    cross-platform cross-compiler single-header C/C++ cpuid intrinsic.

    C
    View on GitHub↗2
  • anzz1/iathookanzz1 avatar

    anzz1/iathook

    0View on GitHub↗

    simple x86/x64 self-contained no-CRT header-only C/C++ win32 import address table hooking library

    C++
    View on GitHub↗0
  • aristocratos/btoparistocratos avatar

    aristocratos/btop

    32,876View on GitHub↗

    Btop is a terminal-based system monitor that tracks and displays real-time hardware performance metrics. It functions as a resource usage dashboard, providing visibility into processor, memory, disk, network, and active process activity directly within a text-based interface. The application utilizes ANSI escape sequences to render complex graphical interfaces and data visualizations within standard terminal emulators. It is designed as a cross-platform performance tool, maintaining consistent monitoring capabilities across various Unix-like operating systems through a platform-agnostic build

    C++
    View on GitHub↗32,876
  • arsenetar/dupeguruarsenetar avatar

    arsenetar/dupeguru

    7,631View on GitHub↗

    dupeguru is a content-based file deduplicator and cross-platform disk cleanup tool. It functions as a local file management utility designed to identify and remove redundant files to recover disk space. The application identifies identical files across a file system by using content hashing and metadata comparison. This allows it to detect duplicates regardless of their filenames or directory locations. The software covers a range of data management capabilities, including directory scanning, content-based data deduplication, and the consolidation of redundant copies into single versions. It

    Python
    View on GitHub↗7,631
  • arsolutioner/extensionhoundarsolutioner avatar

    arsolutioner/ExtensionHound

    189View on GitHub↗

    A security analysis tool that identifies DNS queries made by browser extensions, empowering security teams to detect and investigate suspicious activities.

    Python
    View on GitHub↗189
  • ast-grep/ast-grepast-grep avatar

    ast-grep/ast-grep

    12,522View on GitHub↗

    ast-grep is a command-line utility and static analysis engine designed for searching, linting, and refactoring source code. It operates by identifying and transforming code blocks based on their underlying syntactic structure rather than relying on text-based or regular expression matching. The tool utilizes a language-agnostic abstraction to normalize diverse programming grammars into a unified tree structure. By employing a rule-driven engine, it allows users to define complex patterns that capture syntax nodes as variables, enabling consistent and syntactically valid modifications across e

    Rustastbabelcodemod
    View on GitHub↗12,522
  • ataraxy-labs/semataraxy-labs avatar

    ataraxy-labs/sem

    2,911View on GitHub↗

    Semantic version control => entity-level diffs, blame, and impact analysis on top of git. 26 languages via tree-sitter. Built for coding agents.

    Rust
    View on GitHub↗2,911
  • ataraxy-labs/weaveAtaraxy-Labs avatar

    Ataraxy-Labs/weave

    1,177View on GitHub↗

    Entity-level git merge driver. Resolves false conflicts git invents when independent agents edit the same file. ~95% reduction vs. line-based merge.

    Rustai-agentscode-intelligencecoding-agents
    View on GitHub↗1,177
  • amora-labs/micropython-captive-portalamora-labs avatar

    amora-labs/micropython-captive-portal

    51View on GitHub↗

    This is a simple captive portal demo for MicroPython using NodeMCU/ESP8266.

    Python
    View on GitHub↗51